This bug was fixed in the package openjdk-17 - 17~19-1ubuntu1 --------------- openjdk-17 (17~19-1ubuntu1) hirsute-proposed; urgency=medium
* SRU: LP: #1925456. Backport 17~19-1 to 21.04, including security fixes. openjdk-17 (17~19-1) unstable; urgency=high * OpenJDK 17 snapshot, build 19. - Fix JDK-8250568: Less ambiguous processing (CVE-2021-2161). - Fix JDK-8249906: Enhance opening JARs (CVE-2021-2163). -- Matthias Klose <d...@ubuntu.com> Thu, 22 Apr 2021 11:39:16 +0200 ** Changed in: openjdk-17 (Ubuntu Hirsute) Status: New => Fix Released ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2021-2161 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2021-2163 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1925456 Title: SRU: backport openjdk-17 with some security fixes to hirsute To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/openjdk-17/+bug/1925456/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs