Uploaded image for project: 'Jira Data Center'
  1. Jira Data Center
  2. JRASERVER-59661

Update Java version bundled found in the installer to a version >= 1.8u71

      Update the bundled version of java to a version >= 1.8u71 (1.8 update 71), which fixes many security issues (http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html#AppendixJAVA).
      Included in the security fixes is a fix for CVE-2016-0483 "An out-of-bounds write flaw was found in the JPEG image format decoder in the AWT component in OpenJDK. A specially crafted JPEG image could cause a Java application to crash or, possibly execute arbitrary code. An untrusted Java application or applet could use this flaw to bypass Java sandbox restrictions".

            [JRASERVER-59661] Update Java version bundled found in the installer to a version >= 1.8u71

            Bugfix Automation Bot made changes -
            Minimum Version New: 7
            Owen made changes -
            Workflow Original: JAC Bug Workflow v2 [ 2846532 ] New: JAC Bug Workflow v3 [ 2910197 ]
            Status Original: Resolved [ 5 ] New: Closed [ 6 ]
            Owen made changes -
            Workflow Original: JIRA Bug Workflow w Kanban v7 - Restricted [ 2583657 ] New: JAC Bug Workflow v2 [ 2846532 ]
            nma (Inactive) made changes -
            Labels Original: affects-server cvss-high security New: affects-server cvss-high patch-management security
            Ignat (Inactive) made changes -
            Workflow Original: JIRA Bug Workflow w Kanban v6 - Restricted [ 1544812 ] New: JIRA Bug Workflow w Kanban v7 - Restricted [ 2583657 ]
            David Black made changes -
            Security Original: Reporter and Atlassian Staff [ 10751 ]
            Owen made changes -
            Workflow Original: JIRA Bug Workflow w Kanban v6 [ 1134892 ] New: JIRA Bug Workflow w Kanban v6 - Restricted [ 1544812 ]
            Oswaldo Hernandez (Inactive) made changes -
            Labels Original: affects-server cvss-high jira-server security New: affects-server cvss-high security
            Oswaldo Hernandez (Inactive) made changes -
            Labels Original: cvss-high jira-server security New: affects-server cvss-high jira-server security
            David Black made changes -
            Link New: This issue relates to CLOUD-7929 [ CLOUD-7929 ]

              ohernandez@atlassian.com Oswaldo Hernandez (Inactive)
              dblack David Black
              Affected customers:
              0 This affects my team
              Watchers:
              6 Start watching this issue

                Created:
                Updated:
                Resolved: