[ubuntu/oracular-proposed] openjdk-17 17.0.12+7-1ubuntu2 (Accepted)

Vladimir Petko vladimir.petko at canonical.com
Sun Jul 21 20:42:29 UTC 2024


openjdk-17 (17.0.12+7-1ubuntu2) oracular; urgency=medium

  * OpenJDK 17.0.12 release, build 7. Release notes:
    https://mail.openjdk.org/pipermail/jdk-updates-dev/2024-July/035798.html
    - CVEs:
      + CVE-2024-21147: 8323231, RangeCheckElimination array index overflow.
      + CVE-2024-21145: 8324559, Out-of-bounds access in 2D image handling.
      + CVE-2024-21140: 8320548, Range Check Elimination (RCE) pre-loop limit
        overflow.
      + CVE-2024-21131: 8314794, potential UTF8 size overflow.
      + CVE-2024-21138: 8319859, Excessive symbol length can lead to infinite loop.
    - Security Fixes:
      + JDK-8303466: C2: failed: malformed control flow. Limit type made precise
        with MaxL/MinL.
      + JDK-8314794: Improve UTF8 String supports.
      + JDK-8319859: Better symbol storage.
      + JDK-8320097: Improve Image transformations.
      + JDK-8320548: Improved loop handling.
      + JDK-8323231: Improve array management.
      + JDK-8323390: Enhance mask blit functionality.
      + JDK-8324559: Improve 2D image handling.
      + JDK-8325600: Better symbol storage.
      + JDK-8327413: Enhance compilation efficiency.
  * No-Change upload to include upstream release notes.

Date: Mon, 22 Jul 2024 08:28:43 +1200
Changed-By: Vladimir Petko <vladimir.petko at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/openjdk-17/17.0.12+7-1ubuntu2
-------------- next part --------------
Format: 1.8
Date: Mon, 22 Jul 2024 08:28:43 +1200
Source: openjdk-17
Built-For-Profiles: noudeb
Architecture: source
Version: 17.0.12+7-1ubuntu2
Distribution: oracular
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Vladimir Petko <vladimir.petko at canonical.com>
Changes:
 openjdk-17 (17.0.12+7-1ubuntu2) oracular; urgency=medium
 .
   * OpenJDK 17.0.12 release, build 7. Release notes:
     https://mail.openjdk.org/pipermail/jdk-updates-dev/2024-July/035798.html
     - CVEs:
       + CVE-2024-21147: 8323231, RangeCheckElimination array index overflow.
       + CVE-2024-21145: 8324559, Out-of-bounds access in 2D image handling.
       + CVE-2024-21140: 8320548, Range Check Elimination (RCE) pre-loop limit
         overflow.
       + CVE-2024-21131: 8314794, potential UTF8 size overflow.
       + CVE-2024-21138: 8319859, Excessive symbol length can lead to infinite loop.
     - Security Fixes:
       + JDK-8303466: C2: failed: malformed control flow. Limit type made precise
         with MaxL/MinL.
       + JDK-8314794: Improve UTF8 String supports.
       + JDK-8319859: Better symbol storage.
       + JDK-8320097: Improve Image transformations.
       + JDK-8320548: Improved loop handling.
       + JDK-8323231: Improve array management.
       + JDK-8323390: Enhance mask blit functionality.
       + JDK-8324559: Improve 2D image handling.
       + JDK-8325600: Better symbol storage.
       + JDK-8327413: Enhance compilation efficiency.
   * No-Change upload to include upstream release notes.
Checksums-Sha1:
 5e7ceb7801e4dd1814164ed29fbecdea20c907e5 4916 openjdk-17_17.0.12+7-1ubuntu2.dsc
 b516a2d4c1e406df051654214306611c034ce969 204984 openjdk-17_17.0.12+7-1ubuntu2.debian.tar.xz
 be05ff429d4f71e42874bc4f0f1d6114a21b6532 15975 openjdk-17_17.0.12+7-1ubuntu2_source.buildinfo
Checksums-Sha256:
 b929c4b29e454ccb3f9336409de67946c33865b1966276b0d8c2df23dfd88d75 4916 openjdk-17_17.0.12+7-1ubuntu2.dsc
 e08c0132806a8e002f135cc7db569be09ca1bb037a3489fb45429d9da46288e2 204984 openjdk-17_17.0.12+7-1ubuntu2.debian.tar.xz
 4d65282f99c1ecab448a657086fb38e2c65e2f275c318a93d7106e56318ccb00 15975 openjdk-17_17.0.12+7-1ubuntu2_source.buildinfo
Files:
 3a8f8b41cf6e3eaff7de24ab16eb5bcc 4916 java optional openjdk-17_17.0.12+7-1ubuntu2.dsc
 9e7654a8cbd90e12bf0f983e1096be6c 204984 java optional openjdk-17_17.0.12+7-1ubuntu2.debian.tar.xz
 fac8c94707e9e17a1b884f8ff1967325 15975 java optional openjdk-17_17.0.12+7-1ubuntu2_source.buildinfo
Original-Maintainer: OpenJDK Team <openjdk-17 at packages.debian.org>
Vcs-Git: https://git.launchpad.net/~vpa1977/ubuntu/+source/openjdk-17
Vcs-Git-Commit: a136d0dd58c0006b13ffe0c66855f95ee2d14afa
Vcs-Git-Ref: refs/heads/july-release


More information about the oracular-changes mailing list