File _patchinfo of Package patchinfo.10538
<patchinfo incident="10538">
<issue tracker="bnc" id="1122299">VUL-1: CVE-2018-11212: libjpeg-turbo,libjpeg62-turbo: Divide By Zero in alloc_sarray function in jmemmgr.c</issue>
<issue tracker="bnc" id="1122293">VUL-0: CVE-2019-2422: java-1_7_0-openjdk,java-1_8_0-openjdk,java-11-openjdk: memory disclosure in FileChannelImpl</issue>
<issue tracker="cve" id="2019-2422"/>
<issue tracker="cve" id="2018-11212"/>
<category>security</category>
<rating>important</rating>
<packager>fstrba</packager>
<description>This update for java-1_8_0-openjdk to version jdk8u201 (icedtea 3.11.0) fixes the following issues:
Security issues fixed:
- CVE-2019-2422: Fixed a memory disclosure in FileChannelImpl (bsc#1122293).
- CVE-2018-11212: Fixed an issue in alloc_sarray function in jmemmgr.c (bsc#1122299).
Complete list of changes: https://mail.openjdk.java.net/pipermail/distro-pkg-dev/2019-March/041223.html
</description>
<summary>Security update for java-1_8_0-openjdk</summary>
</patchinfo>