Update openjdk-8 to 8u212 - security fixes are provided
Bug #1826001 reported by
Julian Alarcon
This bug affects 2 people
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
openjdk-8 (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned |
Bug Description
Current OpenJDK 8 version in Ubuntu is 8u191.
Java is now on 8u212 version
Debian already updated this in stable:
Debian packages:
https:/
Changelog from OpenJDK:
https:/
Seems that source code is already in Launchpad: https:/
* Security fixes
- S8211936, CVE-2019-2602: Better String parsing
- S8218453, CVE-2019-2684: More dynamic RMI interactions
- S8219066, CVE-2019-2698: Fuzzing TrueType fonts: setCurrGlyphID()
description: | updated |
information type: | Private Security → Public Security |
tags: | added: upgrade-software-version |
tags: | added: bionic xenial |
To post a comment you must log in.
This bug was fixed in the package openjdk-8 - 8u212-b03-0ubuntu1
--------------- b03-0ubuntu1) eoan; urgency=medium
openjdk-8 (8u212-
[ Tiago Stürmer Daitx ]
* Update to 8u212-b03. LP: #1826001.
* Security fixes:
- S8211936, CVE-2019-2602: Better String parsing.
- S8218453, CVE-2019-2684: More dynamic RMI interactions.
- S8219066, CVE-2019-2698: Fuzzing TrueType fonts: setCurrGlyphID().
* Revert to GTK2 as default since GTK3 still has padding and component
issues:
- debian/rules: always Build-Depends on libgtk2.0-dev and Depends on
libgtk2.0-0 instead of relying on gtk3 for some releases.
* debian/control: add missing dependency on testng (required by the
testsuites).
[ Andrej Shadura ]
* debian/rules: check for nodoc instead of nodocs in DEB_BUILD_OPTIONS.
Closes: 922757.
[ Matthias Klose ] tests/jtdiff- autopkgtest. sh, tests/jtreg- autopkgtest. in, debian/ tests/jtreg- autopkgtest. sh:
* debian/rules, debian/
debian/
only set the JDK under test and allow jtreg to use its default JDK
for running the tests.
[ Thorsten Glaser ] compatible parsechangelog call.
* Improve compatibility with older releases. Closes: #925407.
- debian/rules: determine source date using backwards-
dpkg-
- debian/control.in: put @bd_cross@ onto same line as @bd_nss@ as
it can be empty.
-- Tiago Stürmer Daitx <email address hidden> Thu, 25 Apr 2019 21:28:59 +0000