VYPR

rpm package

almalinux/java-25-openjdk-javadoc-zip

pkg:rpm/almalinux/java-25-openjdk-javadoc-zip

Vulnerabilities (26)

  • CVE-2026-60147MedJul 21, 2026
    affected < 1:25.0.4.0.7-1.1.el10_2.alma.1fixed 1:25.0.4.0.7-1.1.el10_2.alma.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf, 11.0.31, 17.0.19, 21.0.11, 25.0.3, 26.0.1; Oracle GraalVM f

  • CVE-2026-47063HigJul 21, 2026
    affected < 1:25.0.4.0.7-1.1.el10_2.alma.1fixed 1:25.0.4.0.7-1.1.el10_2.alma.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf, 11.0.31, 17.0.19, 21.0.11, 25.0.3, 26.0.1; Oracle GraalVM

  • CVE-2026-47059LowJul 21, 2026
    affected < 1:25.0.4.0.7-1.1.el10_2.alma.1fixed 1:25.0.4.0.7-1.1.el10_2.alma.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D). Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf, 11.0.31, 17.0.19, 21.0.11, 25.0.3, 26.0.1; Oracle GraalVM for JDK

  • CVE-2026-47027MedJul 21, 2026
    affected < 1:25.0.4.0.7-1.1.el10_2.alma.1fixed 1:25.0.4.0.7-1.1.el10_2.alma.1

    Vulnerability in Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf, 11.0.31, 17.0.19, 21.0.11, 25.0.3, 26.0.1; Oracle GraalVM for JDK: 17.0.19 and 21.0.11; Oracle GraalVM Enterprise Edition: 21.3.18. Easily exploit

  • CVE-2026-47021MedJul 21, 2026
    affected < 1:25.0.4.0.7-1.1.el10_2.alma.1fixed 1:25.0.4.0.7-1.1.el10_2.alma.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D). Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf, 11.0.31, 17.0.19, 21.0.11, 25.0.3, 26.0.1; Oracle GraalVM for JDK

  • CVE-2026-47010LowJul 21, 2026
    affected < 1:25.0.4.0.7-1.1.el10_2.alma.1fixed 1:25.0.4.0.7-1.1.el10_2.alma.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf, 11.0.31, 17.0.19, 21.0.11, 25.0.3, 26.0.1; Oracle GraalVM fo

  • CVE-2026-46968MedJul 21, 2026
    affected < 1:25.0.4.0.7-1.1.el10_2.alma.1fixed 1:25.0.4.0.7-1.1.el10_2.alma.1

    Vulnerability in Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf, 11.0.31, 17.0.19, 21.0.11, 25.0.3, 26.0.1; Oracle GraalVM for JDK: 17.0.19 and 21.0.11; Oracle GraalVM Enterprise Edition: 21.3.18. Difficult to exploi

  • CVE-2026-46917MedJul 21, 2026
    affected < 1:25.0.4.0.7-1.1.el10_2.alma.1fixed 1:25.0.4.0.7-1.1.el10_2.alma.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 11.0.31, 17.0.19, 21.0.11, 25.0.3, 26.0.1; Oracle GraalVM for JDK: 17.0.19 and 21

  • CVE-2026-34282HigApr 21, 2026
    affected < 1:25.0.3.0.9-1.el10_2fixed 1:25.0.3.0.9-1.el10_2

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supported versions that are affected are Oracle Java SE: 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle GraalVM for JDK: 1

  • CVE-2026-34268LowApr 21, 2026
    affected < 1:25.0.3.0.9-1.el10_2fixed 1:25.0.3.0.9-1.el10_2

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle Gr

  • CVE-2026-22021MedApr 21, 2026
    affected < 1:25.0.3.0.9-1.el10_2fixed 1:25.0.3.0.9-1.el10_2

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle GraalV

  • CVE-2026-22018LowApr 21, 2026
    affected < 1:25.0.3.0.9-1.el10_2fixed 1:25.0.3.0.9-1.el10_2

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle G

  • CVE-2026-22016HigApr 21, 2026
    affected < 1:25.0.3.0.9-1.el10_2fixed 1:25.0.3.0.9-1.el10_2

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle GraalV

  • CVE-2026-22013MedApr 21, 2026
    affected < 1:25.0.3.0.9-1.el10_2fixed 1:25.0.3.0.9-1.el10_2

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JGSS). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle GraalV

  • CVE-2026-22008LowApr 21, 2026
    affected < 1:25.0.3.0.9-1.el10_2fixed 1:25.0.3.0.9-1.el10_2

    Vulnerability in Oracle Java SE (component: Libraries). The supported version that is affected is Oracle Java SE: 25.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE. Successful atta

  • CVE-2026-22007LowApr 21, 2026
    affected < 1:25.0.3.0.9-1.el10_2fixed 1:25.0.3.0.9-1.el10_2

    Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle Gr

  • CVE-2026-41254MedApr 18, 2026
    affected < 1:25.0.4.0.7-1.1.el10_2.alma.1fixed 1:25.0.4.0.7-1.1.el10_2.alma.1

    Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check is performed after the multiplication.

  • CVE-2026-33636HigMar 26, 2026
    affected < 1:25.0.3.0.9-1.el10_2fixed 1:25.0.3.0.9-1.el10_2

    LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versions 1.6.36 through 1.6.55, an out-of-bounds read and write exists in libpng's ARM/AArch64 Neon-optimized palette expansion path. Whe

  • CVE-2026-33416HigMar 26, 2026
    affected < 1:25.0.3.0.9-1.el10_2fixed 1:25.0.3.0.9-1.el10_2

    LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versions 1.2.1 through 1.6.55, `png_set_tRNS` and `png_set_PLTE` each alias a heap-allocated buffer between `png_struct` and `png_info`,

  • CVE-2026-26740HigMar 18, 2026
    affected < 1:25.0.3.0.9-1.el10_2fixed 1:25.0.3.0.9-1.el10_2

    Buffer Overflow vulnerability in giflib v.5.2.2 allows a remote attacker to cause a denial of service via the EGifGCBToExtension overwriting an existing Graphic Control Extension block without validating its allocated size.

Page 1 of 2