[ubuntu/focal-security] openjdk-17 17.0.5+8-2ubuntu1~20.04 (Accepted)

Eduardo Barretto eduardo.barretto at canonical.com
Wed Nov 9 11:50:13 UTC 2022


openjdk-17 (17.0.5+8-2ubuntu1~20.04) focal-security; urgency=medium

  * Build 17.0.5+8 for Ubuntu 20.04 LTS.

openjdk-17 (17.0.5+8-2ubuntu1) kinetic-security; urgency=medium

  * Handle jtreg package name for backports.

openjdk-17 (17.0.5+8-2) unstable; urgency=medium

  * Fix the binary-indep only build.

openjdk-17 (17.0.5+8-1) unstable; urgency=high

  * OpenJDK 17.0.5+8 (release).
  * Security fixes
    - JDK-8289366: Improve HTTP/2 client usage.
    - JDK-8288508: Enhance ECDSA usage.
    - JDK-8286918: Better HttpServer service.
    - JDK-8287446: Enhance icon presentations.
    - JDK-8286910: Improve JNDI lookups.
    - JDK-8286511: Improve macro allocation.
    - JDK-8286526: Improve NTLM support.
    - JDK-8286533: Key X509 usages.
    - JDK-8286077: Wider MultiByte conversions.
    - JDK-8286519: Better memory handling.
    - JDK-8285662: Better permission resolution.
    - JDK-8282252: Improve BigInteger/Decimal validation.
  * Build using GCC 12 in recent development distros.

openjdk-17 (17.0.4+8-1) unstable; urgency=high

  * OpenJDK 17.0.4+8 (release).
  * Security fixes
    - JDK-8272243: Improve DER parsing.
    - JDK-8272249: Better properties of loaded Properties.
    - JDK-8273056, JDK-8283875, CVE-2022-21549: java.util.random does not
      correctly sample exponential or Gaussian distributions.
    - JDK-8277608: Address IP Addressing.
    - JDK-8281859, CVE-2022-21540: Improve class compilation.
    - JDK-8281866, CVE-2022-21541: Enhance MethodHandle invocations.
    - JDK-8283190: Improve MIDI processing.
    - JDK-8284370: Improve zlib usage.
    - JDK-8285407, CVE-2022-34169: Improve Xalan supports.
  * Disable the reproducible-copyright-headers patch.
  * Only try to re-run failed tests once instead of three times.

Date: 2022-10-25 12:49:08.792427+00:00
Changed-By: Matthias Klose <doko at ubuntu.com>
Signed-By: Eduardo Barretto <eduardo.barretto at canonical.com>
https://launchpad.net/ubuntu/+source/openjdk-17/17.0.5+8-2ubuntu1~20.04
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list