← Search the atlas
SUSE-SU-2021:1554-1
Not scored
Security update for java-11-openjdk
This update for java-11-openjdk fixes the following issues:
- Update to upstream tag jdk-11.0.11+9 (April 2021 CPU)
* CVE-2021-2163: Fixed incomplete enforcement of JAR signing disabled algorithms (bsc#1185055)
* CVE-2021-2161: Fixed incorrect handling of partially quoted arguments in ProcessBuilder (bsc#1185056)
- moved mozilla-nss dependency to java-11-openjdk-headless package, this is necessary to be able to do crypto
with just java-11-openjdk-headless installed (bsc#1184606).
Exploit probability
Not scored
Published
May 11, 2021
Required by
Not available
Last source change
February 4, 2026
02 / AFFECTED SOFTWARE
Affected packages
SUSE:Enterprise Storage 6
java-11-openjdk
SUSE:Linux Enterprise High Performance Computing 15 SP1-ESPOS
java-11-openjdk
SUSE:Linux Enterprise High Performance Computing 15 SP1-LTSS
java-11-openjdk
SUSE:Linux Enterprise High Performance Computing 15-ESPOS
java-11-openjdk
SUSE:Linux Enterprise High Performance Computing 15-LTSS
java-11-openjdk
SUSE:Linux Enterprise Module for Basesystem 15 SP2
java-11-openjdk
SUSE:Linux Enterprise Module for Basesystem 15 SP3
java-11-openjdk
SUSE:Linux Enterprise Module for Package Hub 15 SP2
java-11-openjdk
SUSE:Linux Enterprise Module for Package Hub 15 SP3
java-11-openjdk
SUSE:Linux Enterprise Server 15 SP1-BCL
java-11-openjdk
SUSE:Linux Enterprise Server 15 SP1-LTSS
java-11-openjdk
SUSE:Linux Enterprise Server 15-LTSS
java-11-openjdk
SUSE:Linux Enterprise Server for SAP Applications 15
java-11-openjdk
SUSE:Linux Enterprise Server for SAP Applications 15 SP1
java-11-openjdk
SUSE:Manager Proxy 4.0
java-11-openjdk
SUSE:Manager Retail Branch Server 4.0
java-11-openjdk
SUSE:Manager Server 4.0
java-11-openjdk
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
SUSE-SU-2021:1554-1
This update for java-11-openjdk fixes the following issues:
- Update to upstream tag jdk-11.0.11+9 (April 2021 CPU)
* CVE-2021-2163: Fixed incomplete enforcement of JAR signing disabled algorithms (bsc#1185055)
* CVE-2021-2161: Fixed incorrect handling of partially quoted arguments in ProcessBuilder (bsc#1185056)
- moved mozilla-nss dependency to java-11-openjdk-headless package, this is necessary to be able to do crypto
with just java-11-openjdk-headless installed (bsc#1184606).
View original source ↗
05 / REFERENCES
Further evidence