[ubuntu/oracular-security] openjdk-lts 11.0.25+9-1ubuntu1~24.10 (Accepted)

Evan Caville evan.caville at canonical.com
Mon Nov 11 01:07:36 UTC 2024


openjdk-lts (11.0.25+9-1ubuntu1~24.10) oracular-security; urgency=medium

  * OpenJDK 11.0.25 release, build 9.

     - CVEs
       + CVE-2024-21208, 8328286: Enhance HTTP client
       + CVE-2024-21210, 8328544: Improve handling of vectorization
       + CVE-2024-21217, 8331446: Improve deserialization support
       + CVE-2024-21235, 8332644: Improve graph optimizations

     - Security fixes
       + JDK-8290367, JDK-8332643: Update default value and extend the scope
         of the com.sun.jndi.ldap.object.trustSerialData system property
       + JDK-8307383: Enhance DTLS connections
       + JDK-8328286: Enhance HTTP client
       + JDK-8328544: Improve handling of vectorization
       + JDK-8328726: Better Kerberos support
       + JDK-8331446: Improve deserialization support
       + JDK-8332644: Improve graph optimizations
       + JDK-8335713: Enhance vectorization analysis

  [ Vladimir Petko ]
  * d/rules: do not include dtrace support for S390x (JDK-8305174).
  * d/t/problems.csv: Disable jdk/sun/security/util/Debug/DebugOptions.java
    due to JDK-8339713.

  * Upload to Ubuntu 24.10

Date: 2024-10-22 13:47:12.852388+00:00
Changed-By: Pushkar Kulkarni <pushkar.kulkarni at canonical.com>
Signed-By: Evan Caville <evan.caville at canonical.com>
https://launchpad.net/ubuntu/+source/openjdk-lts/11.0.25+9-1ubuntu1~24.10
-------------- next part --------------
Sorry, changesfile not available.


More information about the oracular-changes mailing list