RHSA-2026:57118: Moderate: OpenJDK 25.0.4.1 Security Update for Windows Builds
- Issued:
- 2026-08-27
- Updated:
- 2026-08-27
RHSA-2026:57118 - Security Advisory
Synopsis
Moderate: OpenJDK 25.0.4.1 Security Update for Windows Builds
Type/Severity
Security Advisory: Moderate
Topic
An update is now available for OpenJDK.
Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
The OpenJDK 25 packages provide the OpenJDK 25 Java Runtime Environment and the OpenJDK 25 Java Software Development Kit.
This release of the Eclipse Temurin build of OpenJDK 25 (25.0.4.1) for Windows serves as a replacement for the Eclipse Temurin build of OpenJDK 25 (25.0.4) and includes security and bug fixes. For further information, refer to the release notes linked to in the References section.
Security Fix(es):
- JDK: Improve Resource Resolving (CVE-2026-60589)
- JDK: Enhance HTTP Connections (CVE-2026-61308)
- JDK: Improve font loading (CVE-2026-70906)
- JDK: Enhance TLS server (CVE-2026-70907)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Solution
Before applying this update, make sure all previously released errata relevant to your system have been applied.
For details on how to apply this update, refer to:
Affected Products
- OpenJDK Java (for Middleware) 1 x86_64
Fixes
- BZ - 2513035 - CVE-2026-60589 OpenJDK: Improve Resource Resolving (2026-08 Security Update)
- BZ - 2513037 - CVE-2026-61308 OpenJDK: Enhance HTTP Connections (2026-08 Security Update)
- BZ - 2513038 - CVE-2026-70907 OpenJDK: Enhance TLS server (2026-08 Security Update)
- BZ - 2513039 - CVE-2026-70906 OpenJDK: Improve font loading (2026-08 Security Update)
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.
How it works
Once you click Generate, Ollama reads this article and crafts 5 comprehension questions. Your answers are graded against the article content — general knowledge won't be enough. Score 70+ to count toward your certificate.
Questions are cached — you'll always get the same 5 for this article.