Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade OpenJDK to 17.0.12 #206

Open
wants to merge 1 commit into
base: develop
Choose a base branch
from
Open

Upgrade OpenJDK to 17.0.12 #206

wants to merge 1 commit into from

Conversation

ghen2
Copy link
Contributor

@ghen2 ghen2 commented Sep 5, 2024

Fixed in OpenJDK 17.0.9 (18 Oct 2023)
CVE-2023-22081 security-libs/javax.net.ssl
CVE-2023-22025 hotspot/compiler

Fixed in OpenJDK 17.0.10 (17 Jan 2024)
CVE-2024-20932 security-libs/java.security
CVE-2024-20918 hotspot/compiler
CVE-2024-20952 security-libs/java.security
CVE-2024-20919 hotspot/runtime
CVE-2024-20921 hotspot/compiler
CVE-2024-20945 security-libs/javax.xml.crypto

Fixed in OpenJDK 17.0.11 (18 Apr 2024)
CVE-2024-21094 hotspot/compiler
CVE-2024-21011 hotspot/runtime
CVE-2024-21068 hotspot/compiler
CVE-2024-21012 core-libs/java.net

Fixed in OpenJDK 17.0.12 (16 Jul 2024)
CVE-2024-21147 hotspot/compiler
CVE-2024-21145 client-libs/2d
CVE-2024-21140 hotspot/compiler
CVE-2024-21131 hotspot/runtime
CVE-2024-21138 hotspot/runtime

Fixed in OpenJDK 17.0.9 (18 Oct 2023)
CVE-2023-22081  security-libs/javax.net.ssl
CVE-2023-22025  hotspot/compiler

Fixed in OpenJDK 17.0.10 (17 Jan 2024)
CVE-2024-20932  security-libs/java.security
CVE-2024-20918  hotspot/compiler
CVE-2024-20952  security-libs/java.security
CVE-2024-20919  hotspot/runtime
CVE-2024-20921  hotspot/compiler
CVE-2024-20945  security-libs/javax.xml.crypto

Fixed in OpenJDK 17.0.11 (18 Apr 2024)
CVE-2024-21094  hotspot/compiler
CVE-2024-21011  hotspot/runtime
CVE-2024-21068  hotspot/compiler
CVE-2024-21012  core-libs/java.net

Fixed in OpenJDK 17.0.12 (16 Jul 2024)
CVE-2024-21147  hotspot/compiler
CVE-2024-21145  client-libs/2d
CVE-2024-21140  hotspot/compiler
CVE-2024-21131  hotspot/runtime
CVE-2024-21138  hotspot/runtime
@ghen2
Copy link
Contributor Author

ghen2 commented Sep 5, 2024

We are running this version in production.

@stondino00
Copy link

Please upgrade to the latest 17.0.13 from October.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants