RLSA-2025:0426

Source
https://errata.rockylinux.org/RLSA-2025:0426
Import Source
https://storage.googleapis.com/resf-osv-data/RLSA-2025:0426.json
JSON Data
https://api.osv.dev/v1/vulns/RLSA-2025:0426
Related
Published
2025-02-13T20:34:26.141542Z
Modified
2025-02-13T20:37:15.432472Z
Summary
Moderate: java-21-openjdk security update for Rocky Linux 8.10, 9.4 and 9.5
Details

The OpenJDK 21 packages provide the OpenJDK 21 Java Runtime Environment and the OpenJDK 21 Java Software Development Kit.

Security Fix(es):

  • JDK: Enhance array handling (CVE-2025-21502)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References
Credits
    • Rocky Enterprise Software Foundation
    • Red Hat

Affected packages

Rocky Linux:8 / java-21-openjdk

Package

Name
java-21-openjdk
Purl
pkg:rpm/rocky-linux/java-21-openjdk?distro=rocky-linux-8&epoch=1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:21.0.6.0.7-1.el8