Oracle Linux 6277 Published by

The following updates are available for Oracle Linux:

ELSA-2024-0310 Moderate: Oracle Linux 9 openssl security update
ELBA-2024-0333 Oracle Linux 9 NetworkManager-libreswan bug fix and enhancement update
ELSA-2024-0266 Important: Oracle Linux 9 java-11-openjdk security update
ELBA-2024-0335 Oracle Linux 9 nmstate bug fix and enhancement update
ELSA-2024-0265 Important: Oracle Linux 8 java-1.8.0-openjdk security and bug fix update
ELBA-2024-12002 Oracle Linux 8 dracut bug fix update
ELSA-2024-0266 Important: Oracle Linux 8 java-11-openjdk security update
ELBA-2024-0344 Oracle Linux 7 sssd bug fix and enhancement update (aarch64)
ELBA-2024-0350 Oracle Linux 7 net-snmp bug fix update (aarch64)
ELSA-2024-0345 Moderate: Oracle Linux 7 python-pillow security update (aarch64)
ELSA-2024-0343 Moderate: Oracle Linux 7 LibRaw security update (aarch64)
ELBA-2024-0348 Oracle Linux 7 389-ds-base bug fix update (aarch64)
ELSA-2024-0343 Moderate: Oracle Linux 7 LibRaw security update
ELBA-2024-0350 Oracle Linux 7 net-snmp bug fix update
ELSA-2024-0345 Moderate: Oracle Linux 7 python-pillow security update
ELBA-2024-0344 Oracle Linux 7 sssd bug fix and enhancement update
ELBA-2024-0348 Oracle Linux 7 389-ds-base bug fix update



ELSA-2024-0310 Moderate: Oracle Linux 9 openssl security update


Oracle Linux Security Advisory ELSA-2024-0310

http://linux.oracle.com/errata/ELSA-2024-0310.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
openssl-3.0.7-25.0.1.el9_3.x86_64.rpm
openssl-devel-3.0.7-25.0.1.el9_3.i686.rpm
openssl-devel-3.0.7-25.0.1.el9_3.x86_64.rpm
openssl-libs-3.0.7-25.0.1.el9_3.i686.rpm
openssl-libs-3.0.7-25.0.1.el9_3.x86_64.rpm
openssl-perl-3.0.7-25.0.1.el9_3.x86_64.rpm

aarch64:
openssl-3.0.7-25.0.1.el9_3.aarch64.rpm
openssl-devel-3.0.7-25.0.1.el9_3.aarch64.rpm
openssl-libs-3.0.7-25.0.1.el9_3.aarch64.rpm
openssl-perl-3.0.7-25.0.1.el9_3.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//openssl-3.0.7-25.0.1.el9_3.src.rpm

Related CVEs:

CVE-2023-5363

Description of changes:

[1:3.0.7-25.0.1]
- Replace upstream references [Orabug: 34340177]

[1:3.0.7-25]
- Provide relevant diagnostics when FIPS checksum is corrupted
Resolves: RHEL-5317
- Don't limit using SHA1 in KDFs in non-FIPS mode.
Resolves: RHEL-5295
- Provide empty evp_properties section in main OpenSSL configuration file
Resolves: RHEL-11439
- Avoid implicit function declaration when building openssl
Resolves: RHEL-1780
- Forbid explicit curves when created via EVP_PKEY_fromdata
Resolves: RHEL-5304
- AES-SIV cipher implementation contains a bug that causes it to ignore empty
associated data entries (CVE-2023-2975)
Resolves: RHEL-5302
- Excessive time spent checking DH keys and parameters (CVE-2023-3446)
Resolves: RHEL-5306
- Excessive time spent checking DH q parameter value (CVE-2023-3817)
Resolves: RHEL-5308
- Fix incorrect cipher key and IV length processing (CVE-2023-5363)
Resolves: RHEL-13251
- Switch explicit FIPS indicator for RSA-OAEP to approved following
clarification with CMVP
Resolves: RHEL-14083
- Backport the check required by SP800-56Br2 6.4.1.2.1 (3.c)
Resolves: RHEL-14083
- Add missing ECDH Public Key Check in FIPS mode
Resolves: RHEL-15990
- Excessive time spent in DH check/generation with large Q parameter value (CVE-2023-5678)
Resolves: RHEL-15954



ELBA-2024-0333 Oracle Linux 9 NetworkManager-libreswan bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2024-0333

http://linux.oracle.com/errata/ELBA-2024-0333.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
NetworkManager-libreswan-1.2.14-3.0.1.el9_3.x86_64.rpm
NetworkManager-libreswan-gnome-1.2.14-3.0.1.el9_3.x86_64.rpm

aarch64:
NetworkManager-libreswan-1.2.14-3.0.1.el9_3.aarch64.rpm
NetworkManager-libreswan-gnome-1.2.14-3.0.1.el9_3.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//NetworkManager-libreswan-1.2.14-3.0.1.el9_3.src.rpm

Description of changes:

[1.2.14-3.0.1]
- Support point-to-point IPSec tunnel (RHEL-20690)
- Fix crash in libreswan_nmstate_iface_dpd_rsa (RHEL-21221)
- Support configuring IPSec mode with 'type' (RHEL-21554)

[1.2.14-2.0.1]
- Add support for DPD parameters, ipsec-interface and authby



ELSA-2024-0266 Important: Oracle Linux 9 java-11-openjdk security update


Oracle Linux Security Advisory ELSA-2024-0266

http://linux.oracle.com/errata/ELSA-2024-0266.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
java-11-openjdk-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-demo-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-devel-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-headless-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-javadoc-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-javadoc-zip-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-jmods-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-src-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-static-libs-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-demo-fastdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-demo-slowdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-devel-fastdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-devel-slowdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-fastdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-headless-fastdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-headless-slowdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-jmods-fastdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-jmods-slowdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-slowdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-src-fastdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-src-slowdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-static-libs-fastdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm
java-11-openjdk-static-libs-slowdebug-11.0.22.0.7-2.0.1.el9.x86_64.rpm

aarch64:
java-11-openjdk-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-demo-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-devel-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-headless-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-javadoc-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-javadoc-zip-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-jmods-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-src-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-static-libs-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-demo-fastdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-demo-slowdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-devel-fastdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-devel-slowdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-fastdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-headless-fastdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-headless-slowdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-jmods-fastdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-jmods-slowdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-slowdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-src-fastdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-src-slowdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-static-libs-fastdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm
java-11-openjdk-static-libs-slowdebug-11.0.22.0.7-2.0.1.el9.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//java-11-openjdk-11.0.22.0.7-2.0.1.el9.src.rpm

Related CVEs:

CVE-2024-20918
CVE-2024-20919
CVE-2024-20921
CVE-2024-20926
CVE-2024-20945
CVE-2024-20952

Description of changes:

[1:11.0.22.0.7-2.0.1]
- Update to 11.0.22.0.7-2.0.1



ELBA-2024-0335 Oracle Linux 9 nmstate bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2024-0335

http://linux.oracle.com/errata/ELBA-2024-0335.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
nmstate-2.2.23-1.el9_3.x86_64.rpm
nmstate-libs-2.2.23-1.el9_3.i686.rpm
nmstate-libs-2.2.23-1.el9_3.x86_64.rpm
python3-libnmstate-2.2.23-1.el9_3.x86_64.rpm
nmstate-devel-2.2.23-1.el9_3.i686.rpm
nmstate-devel-2.2.23-1.el9_3.x86_64.rpm
nmstate-static-2.2.23-1.el9_3.i686.rpm
nmstate-static-2.2.23-1.el9_3.x86_64.rpm

aarch64:
nmstate-2.2.23-1.el9_3.aarch64.rpm
nmstate-libs-2.2.23-1.el9_3.aarch64.rpm
python3-libnmstate-2.2.23-1.el9_3.aarch64.rpm
nmstate-devel-2.2.23-1.el9_3.aarch64.rpm
nmstate-static-2.2.23-1.el9_3.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//nmstate-2.2.23-1.el9_3.src.rpm

Description of changes:

[2.2.23-1]
- Upgrade to 2.2.23.

[2.2.22-1]
- Upgrade to 2.2.22.



ELSA-2024-0265 Important: Oracle Linux 8 java-1.8.0-openjdk security and bug fix update


Oracle Linux Security Advisory ELSA-2024-0265

http://linux.oracle.com/errata/ELSA-2024-0265.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
java-1.8.0-openjdk-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-accessibility-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-demo-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-devel-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-headless-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-javadoc-1.8.0.402.b06-2.0.1.el8.noarch.rpm
java-1.8.0-openjdk-javadoc-zip-1.8.0.402.b06-2.0.1.el8.noarch.rpm
java-1.8.0-openjdk-src-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-demo-fastdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-demo-slowdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-devel-fastdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-devel-slowdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-fastdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-headless-fastdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-headless-slowdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-slowdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-src-fastdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm
java-1.8.0-openjdk-src-slowdebug-1.8.0.402.b06-2.0.1.el8.x86_64.rpm

aarch64:
java-1.8.0-openjdk-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-accessibility-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-demo-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-devel-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-headless-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-javadoc-1.8.0.402.b06-2.0.1.el8.noarch.rpm
java-1.8.0-openjdk-javadoc-zip-1.8.0.402.b06-2.0.1.el8.noarch.rpm
java-1.8.0-openjdk-src-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-demo-fastdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-demo-slowdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-devel-fastdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-devel-slowdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-fastdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-headless-fastdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-headless-slowdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-slowdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-src-fastdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm
java-1.8.0-openjdk-src-slowdebug-1.8.0.402.b06-2.0.1.el8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates//java-1.8.0-openjdk-1.8.0.402.b06-2.0.1.el8.src.rpm

Related CVEs:

CVE-2024-20918
CVE-2024-20919
CVE-2024-20921
CVE-2024-20926
CVE-2024-20945
CVE-2024-20952

Description of changes:

[1:1.8.0.402.b06-0.2.0.1]
- Update to shenandoah-jdk8u402-b06 (GA)
- Sync the copy of the portable specfile with the latest update
- Add Oracle vendor bug URL [Orabug: 34340155]



ELBA-2024-12002 Oracle Linux 8 dracut bug fix update


Oracle Linux Bug Fix Advisory ELBA-2024-12002

http://linux.oracle.com/errata/ELBA-2024-12002.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
dracut-049-228.git20230802.0.2.el8.x86_64.rpm
dracut-caps-049-228.git20230802.0.2.el8.x86_64.rpm
dracut-config-generic-049-228.git20230802.0.2.el8.x86_64.rpm
dracut-config-rescue-049-228.git20230802.0.2.el8.x86_64.rpm
dracut-live-049-228.git20230802.0.2.el8.x86_64.rpm
dracut-network-049-228.git20230802.0.2.el8.x86_64.rpm
dracut-squash-049-228.git20230802.0.2.el8.x86_64.rpm
dracut-tools-049-228.git20230802.0.2.el8.x86_64.rpm

aarch64:
dracut-049-228.git20230802.0.2.el8.aarch64.rpm
dracut-caps-049-228.git20230802.0.2.el8.aarch64.rpm
dracut-config-generic-049-228.git20230802.0.2.el8.aarch64.rpm
dracut-config-rescue-049-228.git20230802.0.2.el8.aarch64.rpm
dracut-live-049-228.git20230802.0.2.el8.aarch64.rpm
dracut-network-049-228.git20230802.0.2.el8.aarch64.rpm
dracut-squash-049-228.git20230802.0.2.el8.aarch64.rpm
dracut-tools-049-228.git20230802.0.2.el8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates//dracut-049-228.git20230802.0.2.el8.src.rpm

Description of changes:

[049-228.git20230802.0.2]
- Remove microcode check based on CONFIG_MICROCODE_[AMD|INTEL] and reworks patch 0193 [Orabug: 36119898]



ELSA-2024-0266 Important: Oracle Linux 8 java-11-openjdk security update


Oracle Linux Security Advisory ELSA-2024-0266

http://linux.oracle.com/errata/ELSA-2024-0266.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
java-11-openjdk-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-demo-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-devel-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-headless-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-javadoc-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-javadoc-zip-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-jmods-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-src-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-static-libs-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-demo-fastdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-demo-slowdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-devel-fastdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-devel-slowdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-fastdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-headless-fastdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-headless-slowdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-jmods-fastdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-jmods-slowdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-slowdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-src-fastdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-src-slowdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-static-libs-fastdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm
java-11-openjdk-static-libs-slowdebug-11.0.22.0.7-2.0.1.el8.x86_64.rpm

aarch64:
java-11-openjdk-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-demo-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-devel-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-headless-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-javadoc-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-javadoc-zip-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-jmods-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-src-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-static-libs-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-demo-fastdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-demo-slowdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-devel-fastdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-devel-slowdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-fastdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-headless-fastdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-headless-slowdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-jmods-fastdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-jmods-slowdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-slowdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-src-fastdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-src-slowdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-static-libs-fastdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm
java-11-openjdk-static-libs-slowdebug-11.0.22.0.7-2.0.1.el8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates//java-11-openjdk-11.0.22.0.7-2.0.1.el8.src.rpm

Related CVEs:

CVE-2024-20918
CVE-2024-20919
CVE-2024-20921
CVE-2024-20926
CVE-2024-20945
CVE-2024-20952

Description of changes:

[1:11.0.22.0.7-2.0.1]
- Update to openjdk-11.0.22+7



ELBA-2024-0344 Oracle Linux 7 sssd bug fix and enhancement update (aarch64)


Oracle Linux Bug Fix Advisory ELBA-2024-0344

http://linux.oracle.com/errata/ELBA-2024-0344.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

aarch64:
libipa_hbac-1.16.5-10.0.3.el7_9.16.aarch64.rpm
libsss_autofs-1.16.5-10.0.3.el7_9.16.aarch64.rpm
libsss_certmap-1.16.5-10.0.3.el7_9.16.aarch64.rpm
libsss_idmap-1.16.5-10.0.3.el7_9.16.aarch64.rpm
libsss_nss_idmap-1.16.5-10.0.3.el7_9.16.aarch64.rpm
libsss_simpleifp-1.16.5-10.0.3.el7_9.16.aarch64.rpm
libsss_sudo-1.16.5-10.0.3.el7_9.16.aarch64.rpm
python-libipa_hbac-1.16.5-10.0.3.el7_9.16.aarch64.rpm
python-libsss_nss_idmap-1.16.5-10.0.3.el7_9.16.aarch64.rpm
python-sss-1.16.5-10.0.3.el7_9.16.aarch64.rpm
python-sssdconfig-1.16.5-10.0.3.el7_9.16.noarch.rpm
python-sss-murmur-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-ad-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-client-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-common-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-common-pac-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-dbus-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-ipa-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-kcm-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-krb5-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-krb5-common-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-ldap-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-libwbclient-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-polkit-rules-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-proxy-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-tools-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-winbind-idmap-1.16.5-10.0.3.el7_9.16.aarch64.rpm
libipa_hbac-devel-1.16.5-10.0.3.el7_9.16.aarch64.rpm
libsss_certmap-devel-1.16.5-10.0.3.el7_9.16.aarch64.rpm
libsss_idmap-devel-1.16.5-10.0.3.el7_9.16.aarch64.rpm
libsss_nss_idmap-devel-1.16.5-10.0.3.el7_9.16.aarch64.rpm
libsss_simpleifp-devel-1.16.5-10.0.3.el7_9.16.aarch64.rpm
sssd-libwbclient-devel-1.16.5-10.0.3.el7_9.16.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//sssd-1.16.5-10.0.3.el7_9.16.src.rpm

Description of changes:

[1.16.5-10.0.3]
- Revert Redhat's change of disallowing duplicated incomplete gid
when "id_provider=ldap" is used, which caused regression in AD
environment. [Orabug: 29286774] [Doc ID 2605732.1]



ELBA-2024-0350 Oracle Linux 7 net-snmp bug fix update (aarch64)


Oracle Linux Bug Fix Advisory ELBA-2024-0350

http://linux.oracle.com/errata/ELBA-2024-0350.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

aarch64:
net-snmp-5.7.2-49.0.1.el7_9.4.aarch64.rpm
net-snmp-agent-libs-5.7.2-49.0.1.el7_9.4.aarch64.rpm
net-snmp-devel-5.7.2-49.0.1.el7_9.4.aarch64.rpm
net-snmp-libs-5.7.2-49.0.1.el7_9.4.aarch64.rpm
net-snmp-utils-5.7.2-49.0.1.el7_9.4.aarch64.rpm
net-snmp-gui-5.7.2-49.0.1.el7_9.4.aarch64.rpm
net-snmp-perl-5.7.2-49.0.1.el7_9.4.aarch64.rpm
net-snmp-python-5.7.2-49.0.1.el7_9.4.aarch64.rpm
net-snmp-sysvinit-5.7.2-49.0.1.el7_9.4.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//net-snmp-5.7.2-49.0.1.el7_9.4.src.rpm

Description of changes:

[1:5.7.2-49.0.1]
- skip setting asp->index if already set in function netsnmp_wrap_up_request
(nishant.nayan@oracle.com) [Orabug: 33054569]



ELSA-2024-0345 Moderate: Oracle Linux 7 python-pillow security update (aarch64)


Oracle Linux Security Advisory ELSA-2024-0345

http://linux.oracle.com/errata/ELSA-2024-0345.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

aarch64:
python-pillow-2.0.0-24.gitd1c6db8.el7_9.aarch64.rpm
python-pillow-devel-2.0.0-24.gitd1c6db8.el7_9.aarch64.rpm
python-pillow-doc-2.0.0-24.gitd1c6db8.el7_9.aarch64.rpm
python-pillow-qt-2.0.0-24.gitd1c6db8.el7_9.aarch64.rpm
python-pillow-sane-2.0.0-24.gitd1c6db8.el7_9.aarch64.rpm
python-pillow-tk-2.0.0-24.gitd1c6db8.el7_9.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//python-pillow-2.0.0-24.gitd1c6db8.el7_9.src.rpm

Related CVEs:

CVE-2023-44271

Description of changes:

[2.0.0-24gitd1c6db8]
- Security fix for CVE-2023-44271
Resolves: RHEL-15459



ELSA-2024-0343 Moderate: Oracle Linux 7 LibRaw security update (aarch64)


Oracle Linux Security Advisory ELSA-2024-0343

http://linux.oracle.com/errata/ELSA-2024-0343.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

aarch64:
LibRaw-0.19.4-2.el7_9.aarch64.rpm
LibRaw-devel-0.19.4-2.el7_9.aarch64.rpm
LibRaw-static-0.19.4-2.el7_9.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//LibRaw-0.19.4-2.el7_9.src.rpm

Related CVEs:

CVE-2021-32142

Description of changes:

[0.19.4-2]
- Fix CVE-2021-32142
- Resolves: RHEL-9524



ELBA-2024-0348 Oracle Linux 7 389-ds-base bug fix update (aarch64)


Oracle Linux Bug Fix Advisory ELBA-2024-0348

http://linux.oracle.com/errata/ELBA-2024-0348.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

aarch64:
389-ds-base-1.3.11.1-4.el7_9.aarch64.rpm
389-ds-base-libs-1.3.11.1-4.el7_9.aarch64.rpm
389-ds-base-devel-1.3.11.1-4.el7_9.aarch64.rpm
389-ds-base-snmp-1.3.11.1-4.el7_9.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//389-ds-base-1.3.11.1-4.el7_9.src.rpm

Description of changes:

[1.3.11.1-4]
- Bump version to 1.3.11.1-4
- Resolves: RHEL-17332 - ns-slapd crash in slapi_attr_basetype



ELSA-2024-0343 Moderate: Oracle Linux 7 LibRaw security update


Oracle Linux Security Advisory ELSA-2024-0343

http://linux.oracle.com/errata/ELSA-2024-0343.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

x86_64:
LibRaw-0.19.4-2.el7_9.i686.rpm
LibRaw-0.19.4-2.el7_9.x86_64.rpm
LibRaw-devel-0.19.4-2.el7_9.i686.rpm
LibRaw-devel-0.19.4-2.el7_9.x86_64.rpm
LibRaw-static-0.19.4-2.el7_9.i686.rpm
LibRaw-static-0.19.4-2.el7_9.x86_64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//LibRaw-0.19.4-2.el7_9.src.rpm

Related CVEs:

CVE-2021-32142

Description of changes:

[0.19.4-2]
- Fix CVE-2021-32142
- Resolves: RHEL-9524



ELBA-2024-0350 Oracle Linux 7 net-snmp bug fix update


Oracle Linux Bug Fix Advisory ELBA-2024-0350

http://linux.oracle.com/errata/ELBA-2024-0350.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

x86_64:
net-snmp-5.7.2-49.0.1.el7_9.4.x86_64.rpm
net-snmp-agent-libs-5.7.2-49.0.1.el7_9.4.i686.rpm
net-snmp-agent-libs-5.7.2-49.0.1.el7_9.4.x86_64.rpm
net-snmp-devel-5.7.2-49.0.1.el7_9.4.i686.rpm
net-snmp-devel-5.7.2-49.0.1.el7_9.4.x86_64.rpm
net-snmp-gui-5.7.2-49.0.1.el7_9.4.x86_64.rpm
net-snmp-libs-5.7.2-49.0.1.el7_9.4.i686.rpm
net-snmp-libs-5.7.2-49.0.1.el7_9.4.x86_64.rpm
net-snmp-perl-5.7.2-49.0.1.el7_9.4.x86_64.rpm
net-snmp-python-5.7.2-49.0.1.el7_9.4.x86_64.rpm
net-snmp-sysvinit-5.7.2-49.0.1.el7_9.4.x86_64.rpm
net-snmp-utils-5.7.2-49.0.1.el7_9.4.x86_64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//net-snmp-5.7.2-49.0.1.el7_9.4.src.rpm

Description of changes:

[1:5.7.2-49.0.1]
- skip setting asp->index if already set in function netsnmp_wrap_up_request
(nishant.nayan@oracle.com) [Orabug: 33054569]



ELSA-2024-0345 Moderate: Oracle Linux 7 python-pillow security update


Oracle Linux Security Advisory ELSA-2024-0345

http://linux.oracle.com/errata/ELSA-2024-0345.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

x86_64:
python-pillow-2.0.0-24.gitd1c6db8.el7_9.i686.rpm
python-pillow-2.0.0-24.gitd1c6db8.el7_9.x86_64.rpm
python-pillow-devel-2.0.0-24.gitd1c6db8.el7_9.i686.rpm
python-pillow-devel-2.0.0-24.gitd1c6db8.el7_9.x86_64.rpm
python-pillow-doc-2.0.0-24.gitd1c6db8.el7_9.x86_64.rpm
python-pillow-qt-2.0.0-24.gitd1c6db8.el7_9.x86_64.rpm
python-pillow-sane-2.0.0-24.gitd1c6db8.el7_9.x86_64.rpm
python-pillow-tk-2.0.0-24.gitd1c6db8.el7_9.x86_64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//python-pillow-2.0.0-24.gitd1c6db8.el7_9.src.rpm

Related CVEs:

CVE-2023-44271

Description of changes:

[2.0.0-24gitd1c6db8]
- Security fix for CVE-2023-44271
Resolves: RHEL-15459



ELBA-2024-0344 Oracle Linux 7 sssd bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2024-0344

http://linux.oracle.com/errata/ELBA-2024-0344.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

x86_64:
libipa_hbac-1.16.5-10.0.3.el7_9.16.i686.rpm
libipa_hbac-1.16.5-10.0.3.el7_9.16.x86_64.rpm
libipa_hbac-devel-1.16.5-10.0.3.el7_9.16.i686.rpm
libipa_hbac-devel-1.16.5-10.0.3.el7_9.16.x86_64.rpm
libsss_autofs-1.16.5-10.0.3.el7_9.16.x86_64.rpm
libsss_certmap-1.16.5-10.0.3.el7_9.16.i686.rpm
libsss_certmap-1.16.5-10.0.3.el7_9.16.x86_64.rpm
libsss_certmap-devel-1.16.5-10.0.3.el7_9.16.i686.rpm
libsss_certmap-devel-1.16.5-10.0.3.el7_9.16.x86_64.rpm
libsss_idmap-1.16.5-10.0.3.el7_9.16.i686.rpm
libsss_idmap-1.16.5-10.0.3.el7_9.16.x86_64.rpm
libsss_idmap-devel-1.16.5-10.0.3.el7_9.16.i686.rpm
libsss_idmap-devel-1.16.5-10.0.3.el7_9.16.x86_64.rpm
libsss_nss_idmap-1.16.5-10.0.3.el7_9.16.i686.rpm
libsss_nss_idmap-1.16.5-10.0.3.el7_9.16.x86_64.rpm
libsss_nss_idmap-devel-1.16.5-10.0.3.el7_9.16.i686.rpm
libsss_nss_idmap-devel-1.16.5-10.0.3.el7_9.16.x86_64.rpm
libsss_simpleifp-1.16.5-10.0.3.el7_9.16.i686.rpm
libsss_simpleifp-1.16.5-10.0.3.el7_9.16.x86_64.rpm
libsss_simpleifp-devel-1.16.5-10.0.3.el7_9.16.i686.rpm
libsss_simpleifp-devel-1.16.5-10.0.3.el7_9.16.x86_64.rpm
libsss_sudo-1.16.5-10.0.3.el7_9.16.x86_64.rpm
python-libipa_hbac-1.16.5-10.0.3.el7_9.16.x86_64.rpm
python-libsss_nss_idmap-1.16.5-10.0.3.el7_9.16.x86_64.rpm
python-sss-1.16.5-10.0.3.el7_9.16.x86_64.rpm
python-sss-murmur-1.16.5-10.0.3.el7_9.16.x86_64.rpm
python-sssdconfig-1.16.5-10.0.3.el7_9.16.noarch.rpm
sssd-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-ad-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-client-1.16.5-10.0.3.el7_9.16.i686.rpm
sssd-client-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-common-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-common-pac-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-dbus-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-ipa-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-kcm-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-krb5-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-krb5-common-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-ldap-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-libwbclient-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-libwbclient-devel-1.16.5-10.0.3.el7_9.16.i686.rpm
sssd-libwbclient-devel-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-polkit-rules-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-proxy-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-tools-1.16.5-10.0.3.el7_9.16.x86_64.rpm
sssd-winbind-idmap-1.16.5-10.0.3.el7_9.16.x86_64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//sssd-1.16.5-10.0.3.el7_9.16.src.rpm

Description of changes:

[1.16.5-10.0.3]
- Revert Redhat's change of disallowing duplicated incomplete gid
when "id_provider=ldap" is used, which caused regression in AD
environment. [Orabug: 29286774] [Doc ID 2605732.1]



ELBA-2024-0348 Oracle Linux 7 389-ds-base bug fix update


Oracle Linux Bug Fix Advisory ELBA-2024-0348

http://linux.oracle.com/errata/ELBA-2024-0348.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

x86_64:
389-ds-base-1.3.11.1-4.el7_9.x86_64.rpm
389-ds-base-devel-1.3.11.1-4.el7_9.x86_64.rpm
389-ds-base-libs-1.3.11.1-4.el7_9.x86_64.rpm
389-ds-base-snmp-1.3.11.1-4.el7_9.x86_64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates//389-ds-base-1.3.11.1-4.el7_9.src.rpm

Description of changes:

[1.3.11.1-4]
- Bump version to 1.3.11.1-4
- Resolves: RHEL-17332 - ns-slapd crash in slapi_attr_basetype