[ubuntu/jammy-security] openjdk-lts 11.0.18+10-0ubuntu1~22.04 (Accepted)

Steve Beattie sbeattie at ubuntu.com
Tue Feb 28 01:59:50 UTC 2023


openjdk-lts (11.0.18+10-0ubuntu1~22.04) jammy-security; urgency=medium

  * Upload to Ubuntu 22.04.

openjdk-lts (11.0.18+10-0ubuntu1) lunar; urgency=medium

  * OpenJDK 11.0.18 release, build 10.
    - CVE-2023-21835, CVE-2023-21843
    - Release notes:
      https://www.oracle.com/java/technologies/javase/11-0-18-relnotes.html
  * debian/patches/*: Refreshed patches for the new release and dropped unused
    patches.
  * debian/watch: use jdk11u repository as upstream.
  * debian/rules: add lunar to jtreg version selection.

openjdk-lts (11.0.17+8-1ubuntu2) kinetic-security; urgency=medium

  * OpenJDK 11.0.17 release, build 8.
  * Security fixes
    - JDK-8289366: Improve HTTP/2 client usage.
    - JDK-8288508: Enhance ECDSA usage.
    - JDK-8286918: Better HttpServer service.
    - JDK-8287446: Enhance icon presentations.
    - JDK-8286910: Improve JNDI lookups.
    - JDK-8286511: Improve macro allocation.
    - JDK-8286526: Improve NTLM support.
    - JDK-8286533: Key X509 usages.
    - JDK-8286077: Wider MultiByte conversions.
    - JDK-8286519: Better memory handling.
    - JDK-8285662: Better permission resolution.
    - JDK-8282252: Improve BigInteger/Decimal validation.
  * Sync packages with 11.0.13+8-1:
    - Build using GCC 12 in recent development distros.
    - Don't install the security/blacklisted.certs symlink anymore.
      Closes: #1021866.
    - Remove patches applied upstream.

Date: 2023-01-24 19:36:27.697227+00:00
Changed-By: Vladimir Petko <vladimir.petko at canonical.com>
Signed-By: Steve Beattie <sbeattie at ubuntu.com>
https://launchpad.net/ubuntu/+source/openjdk-lts/11.0.18+10-0ubuntu1~22.04
-------------- next part --------------
Sorry, changesfile not available.


More information about the jammy-changes mailing list