• [SECURITY] [DSA 4899-1] openjdk-11 security update

    From Moritz Muehlenhoff@21:1/5 to All on Fri Apr 23 22:10:01 2021
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-4899-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff
    April 23, 2021 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : openjdk-11
    CVE ID : CVE-2021-2161

    It was discovered that the OpenJDK Java platform incompletely enforced configuration settings used in Jar signing verifications.

    For the stable distribution (buster), this problem has been fixed in
    version 11.0.11+9-1~deb10u1.

    We recommend that you upgrade your openjdk-11 packages.

    For the detailed security status of openjdk-11 please refer to
    its security tracker page at: https://security-tracker.debian.org/tracker/openjdk-11

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: debian-security-announce@lists.debian.org
    -----BEGIN PGP SIGNATURE-----

    iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmCDKPUACgkQEMKTtsN8 TjZZOQ/9HjEtAPhML2FPJSlmH9rEELNkGMwOhgc34MF1RjLw0BUll3UPY7Yo2caL KrDpzsZ3awRJNlp+i4m5Fk87kIUpXi08JP9nGe1aaQk/8HjTJD/hZ7SBf+fqtgDZ cNzQEK93hBma3/aB1HAAmYPzAFdOuS6M23P77mlmoffNC58EkiIiqXHlRRVfaa03 wKxn/nX1W5aDpDtOCBqw4oouVM7d6lEAX6Di9MmBSye3CSIAzH/fcTNi1IBGF4la Eq46iLzb0guadkkbZNEpTzK2K02OJdKDCINWnJa7tLPH8oQ9cSW1gz7hpbyUNchf VWZphQ1dVOaHDcAfWpWRwKTmVjd3/n/mBSdOyFUQOxSTlOdwTvLVCE0KOLxYaE7p OhsGXAWFST0N3zo8TP+JM4AKu5xI4Pd0zllRLoQ+3fDk2p5etnY6pwKYF4m4LT3T +JvXGTf030Lq9aG/9yY31Mgn1S6QZe65/KW00tFgwsKTeNZPiU9K3Oq/+NFjuZmK +f7tgXfP1KwgD4eS8kuXuty93nWHOYLkaEAaTwY5DRl2NZWAuFLBsYpC+iroZf3F ADUzH8rIuwX8D8DJY6ey679R96XDNXDY5voIwbLu6FTDdp0voViXYXRp9CN5HWrh kaFS5gAXlKhq9lHrhuiVppp5x05Muq/faunTE+Dw8aC7a0wPbrc=
    =deH3
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)