FlawAtlas
Search the atlas
SUSE-SU-2020:1685-1 Not scored

Security update for java-1_8_0-ibm

This update for java-1_8_0-ibm fixes the following issues: java-1_8_0-ibm was updated to Java 8.0 Service Refresh 6 Fix Pack 10 (bsc#1172277,bsc#1169511,bsc#1160968) - CVE-2020-2654: Fixed an issue which could have resulted in unauthorized ability to cause a partial denial of service - CVE-2020-2754: Forwarded references to Nashorn - CVE-2020-2755: Improved Nashorn matching - CVE-2020-2756: Improved mapping of serial ENUMs - CVE-2020-2757: Less Blocking Array Queues - CVE-2020-2781: Improved TLS session handling - CVE-2020-2800: Improved Headings for HTTP Servers - CVE-2020-2803: Enhanced buffering of byte buffers - CVE-2020-2805: Enhanced typing of methods - CVE-2020-2830: Improved Scanner conversions - CVE-2019-2949: Fixed an issue which could have resulted in unauthorized access to critical data - Added RSA PSS SUPPORT TO IBMPKCS11IMPL - The pack200 and unpack200 alternatives should be slaves of java (bsc#1171352).

Exploit probability Not scored
Published June 19, 2020
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Enterprise Storage 5 java-1_8_0-ibm
SUSE:HPE Helion OpenStack 8 java-1_8_0-ibm
SUSE:Linux Enterprise Server 12 SP2-BCL java-1_8_0-ibm
SUSE:Linux Enterprise Server 12 SP2-LTSS java-1_8_0-ibm
SUSE:Linux Enterprise Server 12 SP3-BCL java-1_8_0-ibm
SUSE:Linux Enterprise Server 12 SP3-LTSS java-1_8_0-ibm
SUSE:Linux Enterprise Server 12 SP4 java-1_8_0-ibm
SUSE:Linux Enterprise Server 12 SP5 java-1_8_0-ibm
SUSE:Linux Enterprise Server for SAP Applications 12 SP2 java-1_8_0-ibm
SUSE:Linux Enterprise Server for SAP Applications 12 SP3 java-1_8_0-ibm
SUSE:Linux Enterprise Server for SAP Applications 12 SP4 java-1_8_0-ibm
SUSE:Linux Enterprise Server for SAP Applications 12 SP5 java-1_8_0-ibm
SUSE:Linux Enterprise Software Development Kit 12 SP4 java-1_8_0-ibm
SUSE:Linux Enterprise Software Development Kit 12 SP5 java-1_8_0-ibm
SUSE:OpenStack Cloud 7 java-1_8_0-ibm
SUSE:OpenStack Cloud 8 java-1_8_0-ibm
SUSE:OpenStack Cloud Crowbar 8 java-1_8_0-ibm

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2020:1685-1

This update for java-1_8_0-ibm fixes the following issues: java-1_8_0-ibm was updated to Java 8.0 Service Refresh 6 Fix Pack 10 (bsc#1172277,bsc#1169511,bsc#1160968) - CVE-2020-2654: Fixed an issue which could have resulted in unauthorized ability to cause a partial denial of service - CVE-2020-2754: Forwarded references to Nashorn - CVE-2020-2755: Improved Nashorn matching - CVE-2020-2756: Improved mapping of serial ENUMs - CVE-2020-2757: Less Blocking Array Queues - CVE-2020-2781: Improved TLS session handling - CVE-2020-2800: Improved Headings for HTTP Servers - CVE-2020-2803: Enhanced buffering of byte buffers - CVE-2020-2805: Enhanced typing of methods - CVE-2020-2830: Improved Scanner conversions - CVE-2019-2949: Fixed an issue which could have resulted in unauthorized access to critical data - Added RSA PSS SUPPORT TO IBMPKCS11IMPL - The pack200 and unpack200 alternatives should be slaves of java (bsc#1171352).

View original source

05 / REFERENCES

Further evidence