ELA-514-1 openjdk-8 security update

multiple vulnerabilities

2021-11-09
Packageopenjdk-8
Version8u312-b07-1~deb8u1
Related CVEs CVE-2021-35550 CVE-2021-35556 CVE-2021-35559 CVE-2021-35561 CVE-2021-35564 CVE-2021-35565 CVE-2021-35567 CVE-2021-35578 CVE-2021-35586 CVE-2021-35588 CVE-2021-35603

Several vulnerabilities have been discovered in the OpenJDK Java runtime, including issues with cyprographic hashing, TLS client handshaking, and various other issues.

Thanks to Thorsten Glaser and ⮡ tarent for contributing the updated packages to address these vulnerabilities.

For Debian 8 jessie, these problems have been fixed in version 8u312-b07-1~deb8u1.

We recommend that you upgrade your openjdk-8 packages.

Further information about Extended LTS security advisories can be found at: https://deb.freexian.com/extended-lts/