Debian alert DLA-4043-1 (openjdk-17)
From: | Emilio Pozuelo Monfort <pochu@debian.org> | |
To: | <debian-lts-announce@lists.debian.org> | |
Subject: | [SECURITY] [DLA 4043-1] openjdk-17 security update | |
Date: | Fri, 07 Feb 2025 10:20:12 +0100 | |
Message-ID: | <20250207092012.E7F012A012E@andromeda> |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4043-1 debian-lts@lists.debian.org https://www.debian.org/lts/security/ Emilio Pozuelo Monfort February 07, 2025 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : openjdk-17 Version : 17.0.14+7-1~deb11u1 CVE ID : CVE-2025-21502 A vulnerability has been discovered in the OpenJDK Java runtime, which may result in authorisation bypass or information disclosure. For Debian 11 bullseye, this problem has been fixed in version 17.0.14+7-1~deb11u1. We recommend that you upgrade your openjdk-17 packages. For the detailed security status of openjdk-17 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/openjdk-17 Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEcJymx+vmJZxd92Q+nUbEiOQ2gwIFAmel0EoACgkQnUbEiOQ2 gwKuqQ//Sq/+vcY8Dahk01SsPoEsv+9GuHTG3RREFToe6+z+vWopmO3XmGHVD77u fCAYk3YclQ308GnfIsZ4RlnEXZOAD3wT+wKb34KhVOk3uJMgXMfIyudwDHX1aBHw gYLiyLwoyEVqy+qRQzqI/cWSBatC2+A2nJsnai7gzCbTcl5ZxNa+sV/uJc5j3j0Y Y3k72cBZAOyvp72tQj1+GYbATaStIPV5aPolbpRPEVb47M+ZlN5LN6OPrQVEMDcu 3v2nFLf4aKHQjQ0bdLhj2nSjeOJFZTSfps5lIqZkFgfuX3cVdnyK4J4ei7mWhaUz aEdrRz/67tqx4lg1jbzx9XzgIPP1ZWSSdwBbJYUYaybPS+6COZFfLjOXqNrlUZ0r YWO5i/Dax78IC/eDiDWvtrReC63pptpL9uv6dtu3c6q4Kx3mf149MRfs1BgCVRxU 7qeu3OyVpZ6Q9WznXpFlzYFAbWVdJPxfgk8+eL4d5vnnfOWVoTkriGx+tbpL9xjm GEN20Z2ivfdn31i3eMxxBhCLsC8bYuIv+dPXDbfS6wI/jD/9xO5N+vkInSbLLXAL +N6e8duoTt9pLaXxa2okvCEqAIqDYhYSOOFEaipkvRr2/kOpE8zQFawGAQTmE3PK tagsDpLwP8QKbgJmnNF9Y9K88fRqmuxx7f5e4miM2vZd/zChwJM= =yU1/ -----END PGP SIGNATURE-----