[ubuntu/kinetic-security] openjdk-8 8u362-ga-0ubuntu1~22.10 (Accepted)

Steve Beattie sbeattie at ubuntu.com
Tue Feb 28 02:02:55 UTC 2023


openjdk-8 (8u362-ga-0ubuntu1~22.10) kinetic-security; urgency=medium

  * Upload to Ubuntu 22.10.

openjdk-8 (8u362-ga-0ubuntu1) lunar; urgency=medium

  * New upstream release
  * CVEs
    - CVE-2023-21830
    - CVE-2023-21843
  * Security fixes
    - JDK-8285021: Improve CORBA communication
    - JDK-8286496: Improve Thread labels
    - JDK-8288516: Enhance font creation
    - JDK-8289350: Better media supports
    - JDK-8293554: Enhanced DH Key Exchanges
    - JDK-8293598: Enhance InetAddress address handling
    - JDK-8293717: Objective view of ObjectView
    - JDK-8293734: Improve BMP image handling
    - JDK-8293742: Better Banking of Sounds
    - JDK-8295687: Better BMP bounds
  * Other changes see
    https://mail.openjdk.org/pipermail/jdk8u-dev/2023-January/016479.html

openjdk-8 (8u352-ga-1) unstable; urgency=medium

  * Update GCC for bookworm/sid and kinetic-proposed from 11 to 12
    to match default system compiler (this needs testing as people
    report early issues in other distros)
  * New upstream release
  * Security fixes:
    - JDK-8282252: Improve BigInteger/Decimal validation
    - JDK-8285662: Better permission resolution
    - JDK-8286511: Improve macro allocation
    - JDK-8286519: Better memory handling
    - JDK-8286526, CVE-2022-21619: Improve NTLM support
    - JDK-8286533, CVE-2022-21626: Key X509 usages
    - JDK-8286910, CVE-2022-21624: Improve JNDI lookups
    - JDK-8286918, CVE-2022-21628: Better HttpServer service
    - JDK-8288508: Enhance ECDSA usage
  * Other changes see
    https://mail.openjdk.org/pipermail/jdk8u-dev/2022-October/015706.html
  * Drop applied patches
  * Upload sponsored by ⮡ tarent

Date: 2023-01-20 09:38:09.317149+00:00
Changed-By: Vladimir Petko <vladimir.petko at canonical.com>
Signed-By: Steve Beattie <sbeattie at ubuntu.com>
https://launchpad.net/ubuntu/+source/openjdk-8/8u362-ga-0ubuntu1~22.10
-------------- next part --------------
Sorry, changesfile not available.


More information about the kinetic-changes mailing list