CentOS 6 ELS: glibc and java-1.8.0-openjdk packages: gradual rollout completed
New updated glibc and java-1.8.0-openjdk packages within CentOS 6 ELS have been rolled out to 100% and are now available for download from our production repository.
CHANGELOG
glibc-2.12-2.213.el6.
- Fix avoid use-after-free vulnerability (CVE-2021-33574)
- Fix avoid out-of-bounds read via signed integer overflow in array index (CVE-2021-35942)
- Fix NULL pointer dereference (CVE-2021-38604)
java-1.8.0-openjdk-1.8.0.275.
- Fix incorrect comparison during range check elimination (CVE-2021-2388)
UPDATE COMMAND
yum update glibc*
yum update java-1.8.0-openjdk*