СloudLinux Blog

CloudLinux OS 6 ELS: glibc and java-1.8.0-openjdk packages have been scheduled for gradual rollout

Written by Inessa Atmachian | Aug 19, 2021 7:44:02 PM

New updated glibc and java-1.8.0-openjdk packages within CloudLinux OS 6 ELS have been scheduled for gradual rollout from our production repository.

Rollout slot: 6
Rolled out to: 0.1%
ETA for 100% rollout: September 3

Changelog

glibc-2.12-2.213.el6.cloudlinux.els

  • Fix avoid use-after-free vulnerability (CVE-2021-33574)
  • Fix avoid out-of-bounds read via signed integer overflow in array index (CVE-2021-35942)
  • Fix NULL pointer dereference (CVE-2021-38604)

java-1.8.0-openjdk-1.8.0.275.b01-1.el6.cloudlinux.els

  • Fix incorrect comparison during range check elimination (CVE-2021-2388)

Update command

yum update glibc*
yum update java-1.8.0-openjdk*

Immediate update (via bypass)

yum update glibc* --enablerepo=cloudlinux-rollout-6-bypass
yum update java-1.8.0-openjdk* --enablerepo=cloudlinux-rollout-6-bypass