Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2023:0196 - Security Advisory
Issued:
2023-01-18
Updated:
2023-01-18

RHSA-2023:0196 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: java-11-openjdk security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for java-11-openjdk is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The java-11-openjdk packages provide the OpenJDK 11 Java Runtime Environment and the OpenJDK 11 Java Software Development Kit.

Security Fix(es):

  • OpenJDK: handshake DoS attack against DTLS connections (JSSE, 8287411) (CVE-2023-21835)
  • OpenJDK: soundbank URL remote loading (Sound, 8293742) (CVE-2023-21843)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

All running instances of OpenJDK Java must be restarted for this update to take effect.

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.1 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.1 x86_64

Fixes

  • BZ - 2160421 - CVE-2023-21835 OpenJDK: handshake DoS attack against DTLS connections (JSSE, 8287411)
  • BZ - 2160475 - CVE-2023-21843 OpenJDK: soundbank URL remote loading (Sound, 8293742)

CVEs

  • CVE-2023-21835
  • CVE-2023-21843

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.1

SRPM
java-11-openjdk-11.0.18.0.10-1.el8_1.src.rpm SHA-256: 2d86494d41bbcc9ef3f63dec1899bfd980302cf48b6276323596af753043a7c5
ppc64le
java-11-openjdk-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: 47b75350a8f5125e957e19e476b7713daf04bdfd8288cc4c6afab3a4e66f2e07
java-11-openjdk-debuginfo-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: 0e9bc74778f78e2b6a049e717f29bcca41dd9d5aacd37bebe46dbb57e13107f5
java-11-openjdk-debugsource-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: 811905c5ca6305d0a4fe7aa326cc8ecb31427b8e16648c28f1ed649b28342742
java-11-openjdk-demo-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: ccfcd5b6e398200071bc9a2167b1eb020b7e0972ca2af79a3064acb4f6a5b5c6
java-11-openjdk-devel-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: d24b08187ad518d6b271b50e7ae1d3637cb0d66a3004db71bcbd918aade0c836
java-11-openjdk-devel-debuginfo-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: 33655205fb34affaf773c3c716230aed1a618b288724d3d7cac404f83acb2970
java-11-openjdk-devel-slowdebug-debuginfo-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: 0b88e973838fb82d13486b1c680ea0ad78a549c3a9b9fb95b631c28b21b09212
java-11-openjdk-headless-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: 6014396ecabf3a1b2eff090876eb99f885cc596c5d4a186cfe9729c625ec68e2
java-11-openjdk-headless-debuginfo-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: 8182911b8ef2668d2e50507457dd7e1066894b806edb706ac7fce2ae907f2330
java-11-openjdk-headless-slowdebug-debuginfo-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: e9ccca263dff2e1605d9eb7203b8c3d09c367d16e45f0b2593bf49633f928665
java-11-openjdk-javadoc-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: 1f70f350dc2dd707867823920bc3a07eab93985660151709e4fbad2c23cfd0a4
java-11-openjdk-javadoc-zip-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: 76c3d2fc1201d146e3f28d597fd8440e311af8ff44f1803cd042a3db79d269af
java-11-openjdk-jmods-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: ed1a23aca5efedfa8c4327ec076935f7e2fbfb24308611498fc2e5d7bfb0680a
java-11-openjdk-slowdebug-debuginfo-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: 6de3db1b6fc9629e9a23fc985955a081d2250ee9a02dea534299584b697c2526
java-11-openjdk-src-11.0.18.0.10-1.el8_1.ppc64le.rpm SHA-256: c30e7d9d117d860ed6c16bcc6bca81205959f85cb117df6ab68815c45e52a967

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.1

SRPM
java-11-openjdk-11.0.18.0.10-1.el8_1.src.rpm SHA-256: 2d86494d41bbcc9ef3f63dec1899bfd980302cf48b6276323596af753043a7c5
x86_64
java-11-openjdk-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: 2d3da7ae5dabf73472467150d297c1401250817878b2eef43813e9e3d066446e
java-11-openjdk-debuginfo-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: d09c12b5e6ac0e3a3a7d76abb922af5036d5c0a52c0ea6a5c3406ed4eae31d27
java-11-openjdk-debugsource-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: 8e1338e894f1816a10ca7de13fd07c1f6579cb5a62ca66feec2cea89cd73010b
java-11-openjdk-demo-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: 9d9cd051c14dcbe3ca064626711f652e4b2ab39d357f485cc1da7e45d3dcf87e
java-11-openjdk-devel-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: 200c91a56ae7d2a70ecd5892150479ea315869121ae1f31a6b4c13a77c112cba
java-11-openjdk-devel-debuginfo-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: ef03975ee00a54db09d087d7c0ebc2e43bda5878c8c18bd389fd151773b499b9
java-11-openjdk-devel-slowdebug-debuginfo-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: e684b3c4f891b17d0054f7bcf9e069082e2080a5d9ad5aaa40648ec4ba03342c
java-11-openjdk-headless-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: 8799697b1d6f2d92f4015a9ccfaab2717e38c955f90205ef3de74b760f0733e1
java-11-openjdk-headless-debuginfo-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: 557f6980d820548c18507a1e2f11444ea2a9a55640b7482faf91ffa1b71b88b0
java-11-openjdk-headless-slowdebug-debuginfo-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: 93dbc42aa28f9111326353101e6a4452ba664592ab550b4b59f3f2e061cd9bf4
java-11-openjdk-javadoc-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: a8e95f89499d9db04eb5933c478309b55990fbb403d1ded044a4599dae1dd3d9
java-11-openjdk-javadoc-zip-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: 274e23e5cb138a1252312bbd606e9dfcde52c7909fbd5336445d0d710ef2ba45
java-11-openjdk-jmods-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: 8b9d6bcbaba9fa4bd7a8d2b65914910cff6fd4b78d5cbcd4dafe17feaae1bbb8
java-11-openjdk-slowdebug-debuginfo-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: cec5b59f6e2f3e3f43251dd83343af4eb5d62d55c6266aa567993522648e63e5
java-11-openjdk-src-11.0.18.0.10-1.el8_1.x86_64.rpm SHA-256: 630af32dc22e7505256f9d98d60302c6dcc36b8618e61e24510afcc61f1bc305

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility