|
|
|
|
Changelog for java-1_8_0-openj9-1.8.0.422-127.43.x86_64.rpm :
* Tue Aug 06 2024 Fridrich Strba - Update to OpenJDK 8u422 build 05 with OpenJ9 0.46.0 virtual machine- Including Oracle July 2024 CPU changes * CVE-2024-21131 (bsc#1228046), CVE-2024-21138 (bsc#1228047), CVE-2024-21140 (bsc#1228048), CVE-2024-21144 (bsc#1228050), CVE-2024-21147 (bsc#1228052), CVE-2024-21145 (bsc#1228051) * OpenJ9 changes, see https://eclipse.dev/openj9/docs/version0.46- Removed patch: * openj9-no-narrowing.patch + fixed in upstream code * Thu May 23 2024 Fridrich Strba - Update to OpenJDK 8u412 build 08 with OpenJ9 0.44.0 virtual machine- Including Oracle April 2024 CPU changes * CVE-2024-21094 (bsc#1222986), CVE-2024-21011 (bsc#1222979), CVE-2024-21085 (bsc#1222984), CVE-2024-21068 (bsc#1222983) * OpenJ9 changes, see https://eclipse.dev/openj9/docs/version0.44- Added patch: * openj9-openssl.patch + fix build with older openssl that does not define SSL_R_UNEXPECTED_EOF_WHILE_READING * Mon May 06 2024 Fridrich Strba - Added patch: * fix-build-with-gcc14.patch + fix build with gcc14 + pointer/integer type precision * Thu Mar 07 2024 Fridrich Strba - Removed patch: * alternative-path-to-tzdb_dat.patch + Remove the possibility to use the system timezone-java. It creates more problems then it solves (bsc#1213470) * Tue Feb 20 2024 Fridrich Strba - Use %patch -P N instead of deprecated %patchN. * Mon Feb 12 2024 Fridrich Strba - Update to OpenJDK 8u402 build 06 with OpenJ9 0.43.0 virtual machine- Including Oracle January 2024 CPU changes * CVE-2024-20918 (bsc#1218907), CVE-2024-20919 (bsc#1218903), CVE-2024-20921 (bsc#1218905), CVE-2024-20926 (bsc#1218906), CVE-2024-20945 (bsc#1218909), CVE-2024-20952 (bsc#1218911) * OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.43/ * Wed Nov 22 2023 Fridrich Strba - Update to OpenJDK 8u392 build 08 with OpenJ9 0.41.0 virtual machine- Including Oracle October 2023 CPU changes * CVE-2023-22067 (bsc#1216379), CVE-2023-22081 (bsc#1216374)- Including OpenJ9 0.41.0 fixes of CVE-2023-5676, bsc#1217214 * For other OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.41- Removed patch: * link-with-as-needed.patch + big part not needed anymore besides one hunk integrated into system-libjpeg.patch- Modified patch: * system-libjpeg.patch + rediff and integrate one hunk from link-with-as-needed.patch * Tue Aug 15 2023 Fridrich Strba - Update to OpenJDK 8u382 build 05 with OpenJ9 0.40.0 virtual machine- Including Oracle July 2023 CPU changes * CVE-2023-22045 (bsc#1213481), CVE-2023-22049 (bsc#1213482) * OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.40- Modified patch: * stringop-overflow.patch + rediff to changed context * Mon Aug 07 2023 Fridrich Strba - Update to OpenJDK 8u372 build 07 with OpenJ9 0.38.0 virtual machine- Including Oracle April 2023 CPU changes * CVE-2023-21930 (bsc#1210628), CVE-2023-21937 (bsc#1210631), CVE-2023-21938 (bsc#1210632), CVE-2023-21939 (bsc#1210634), CVE-2023-21954 (bsc#1210635), CVE-2023-21967 (bsc#1210636), CVE-2023-21968 (bsc#1210637) * OpenJ9 specific vulnerability: CVE-2023-2597 (bsc#1211615) * OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.38 * Tue Mar 28 2023 Fridrich Strba - Added patch: * stringop-overflow.patch + disable -Wstringop-overflow and fix build in Factory * Mon Mar 06 2023 Fridrich Strba - Update to OpenJDK 8u362 build 09 with OpenJ9 0.36.0 virtual machine- Including Oracle January 2023 CPU changes CVE-2023-21830 (bsc#1207249), CVE-2023-21843 (bsc#1207248) * OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.36/ * Mon Oct 31 2022 Fridrich Strba - Update to OpenJDK 8u352 build 08 with OpenJ9 0.35.0 virtual machine * Including Oracle October 2022 CPU changes CVE-2022-21619 (bsc#1204473), CVE-2022-21626 (bsc#1204471), CVE-2022-21624 (bsc#1204475), CVE-2022-21628 (bsc#1204472) * Fixes OpenJ9 vulnerability bsc#1204703, CVE-2022-3676 * OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.35 * Tue Aug 16 2022 Fridrich Strba - Update to OpenJDK 8u345 build 01 with OpenJ9 0.33.0 virtual machine * Including Oracle July 2022 CPU changes CVE-2022-21540 (bsc#1201694), CVE-2022-21541 (bsc#1201692), CVE-2022-34169 (bsc#1201684) * OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.33- Modified template patch: * openj9-nogit.patch.in + The git commit hash code became more generic, so redo the template patch- Added patch: * openj9-no-narrowing.patch + Fix narrowing conversion error * Tue Jul 12 2022 Fridrich Strba - Update to OpenJDK 8u332 build 09 with OpenJ9 0.32.0 virtual machine * Fixes bsc#1198935, CVE-2021-41041: unverified methods can be invoked using MethodHandles * Including Oracle April 2022 CPU fixes CVE-2022-21426 (bsc#1198672), CVE-2022-21434 (bsc#1198674), CVE-2022-21443 (bsc#1198675), CVE-2022-21476 (bsc#1198671), CVE-2022-21496 (bsc#1198673) * OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.32 * Mon Feb 28 2022 Fridrich Strba - Update to OpenJDK 8u322 build 04 with OpenJ9 0.30.0 virtual machine * including Oracle January 2022 CPU changes CVE-2022-21248 (bsc#1194926), CVE-2022-21277 (bsc#1194930), CVE-2022-21282 (bsc#1194933), CVE-2022-21291 (bsc#1194925), CVE-2022-21293 (bsc#1194935), CVE-2022-21294 (bsc#1194934), CVE-2022-21296 (bsc#1194932), CVE-2022-21299 (bsc#1194931), CVE-2022-21305 (bsc#1194939), CVE-2022-21340 (bsc#1194940), CVE-2022-21341 (bsc#1194941), CVE-2022-21360 (bsc#1194929), CVE-2022-21365 (bsc#1194928), CVE-2022-21366 (bsc#1194927), * OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.30- Added patch: * libdwarf-fix.patch + fix build with different versions of libdwarf * Tue Nov 02 2021 Fridrich Strba - Update to OpenJDK 8u312 build 07 with OpenJ9 0.29.0 virtual machine * including Oracle July 2021 and October 2021 CPU changes CVE-2021-2341 (bsc#1188564), CVE-2021-2369 (bsc#1188565), CVE-2021-2388 (bsc#1188566), CVE-2021-35550 (bsc#1191901), CVE-2021-35565 (bsc#1191909), CVE-2021-35556 (bsc#1191910), CVE-2021-35559 (bsc#1191911), CVE-2021-35561 (bsc#1191912), CVE-2021-35564 (bsc#1191913), CVE-2021-35567 (bsc#1191903), CVE-2021-35578 (bsc#1191904), CVE-2021-35586 (bsc#1191914), CVE-2021-35603 (bsc#1191906) * OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.29- Remove the unneeded icedtea-sound provider- Removed patches: * jdk-gcc-warnings.patch * maybe-uninitialized.patch * omr-no-return-in-nonvoid-function.patch + integrated upstream * Fri Jun 18 2021 Fridrich Strba - Remove the forcing of DWARF version 4, since the libdwarf in factory works correctly with this build and DWARF5 symbol format- Expand supported architectures to aarch64 * Thu Jun 10 2021 Fridrich Strba - Force DWARF version 4 when building with gcc >= 11 * the internal omr tools set error with debugging information in DWARF5 format * fixes build in factory * Sun May 16 2021 Fridrich Strba - Fix version typo in spec file * Fri May 14 2021 Fridrich Strba - Update to OpenJDK 8u292 build 10 with OpenJ9 0.26.0 virtual machine * including Oracle April 2021 CPU changes (bsc#1185055, CVE-2021-2163 and bsc#1185056, CVE-2021-2161) * OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.26- Added patch: * maybe-uninitialized.patch + initialize variables in constructor + fixes build with newer gcc * Tue Jan 26 2021 Fridrich Strba - Update to OpenJDK 8u282 build 08 with OpenJ9 0.24.0 virtual machine * including Oracle January 2021 CPU changes (bsc#1181239) * OpenJ9 changes, see https://www.eclipse.org/openj9/docs/version0.24- Modified template patch: * openj9-nogit.patch.in + replace git runs by pre-fetched git hashes in new places + remove hunks that are irrelevant in new sources
|
|
|