Back to bug 2175317

Who When What Removed Added
Red Hat Bugzilla 2023-03-03 21:33:00 UTC Pool ID sst_dotnet_java_rhel_9
Red Hat One Jira (issues.redhat.com) 2023-03-03 21:33:33 UTC Link ID Red Hat Issue Tracker RHELPLAN-150662
Severin Gehwolf 2023-03-06 09:52:17 UTC CC sgehwolf
Severin Gehwolf 2023-03-14 10:45:17 UTC CC fferrari, mbalao
Andrew John Hughes 2023-04-03 15:16:54 UTC Status NEW ASSIGNED
Link ID openjdk bug system JDK-8271199
RHEL Program Management 2023-04-14 01:29:44 UTC Keywords Triaged
Petra Alice Mikova 2023-04-19 09:59:55 UTC CC pmikova
RHEL Program Management Team 2023-04-19 14:09:51 UTC Blocks 2188023
RHEL Program Management Team 2023-04-19 14:10:00 UTC Blocks 2188024
RHEL Program Management Team 2023-04-19 14:10:09 UTC Blocks 2188025
RHEL Program Management Team 2023-04-19 14:10:15 UTC Keywords ZStream
Andrew John Hughes 2023-04-19 15:57:24 UTC Doc Type If docs needed, set a value Release Note
Doc Text The RSAPSSSignature implementation works with RSA keys via the SunRSASign provider. However, it did not fully check that the RSA key could be used by the provider before attempting to do so, leading to the possibility of errors being returned with custom security providers. The implementation now validates RSA keys and will allow other providers to handle such keys where it can not.
Andrew John Hughes 2023-06-26 15:07:14 UTC Doc Text The RSAPSSSignature implementation works with RSA keys via the SunRSASign provider. However, it did not fully check that the RSA key could be used by the provider before attempting to do so, leading to the possibility of errors being returned with custom security providers. The implementation now validates RSA keys and will allow other providers to handle such keys where it can not. If this bug requires documentation, please select an appropriate Doc Type value.
Resolution --- CURRENTRELEASE
Fixed In Version java-1.8.0-openjdk-1.8.0.372.b07-2.el9
Status ASSIGNED CLOSED
Last Closed 2023-06-26 15:07:14 UTC
Lucie Vařáková 2023-07-12 09:41:42 UTC Doc Type Release Note Bug Fix
Docs Contact jvaldez
Lucie Vařáková 2023-07-12 09:42:57 UTC Doc Text If this bug requires documentation, please select an appropriate Doc Type value. The RSAPSSSignature implementation works with RSA keys via the SunRSASign provider. However, it did not fully check that the RSA key could be used by the provider before attempting to do so, leading to the possibility of errors being returned with custom security providers. The implementation now validates RSA keys and will allow other providers to handle such keys where it can not.

Back to bug 2175317