An openjdk-11 security update has been released for Debian GNU/Linux 10 to address several vulnerabilities, which could result in denial of service, information disclosure, bypass of access/sandbox restrictions or the acceptance of untrusted certificates.
DSA 4779-1: openjdk-11 security update
- -------------------------------------------------------------------------
Debian Security Advisory DSA-4779-1 security@debian.org
https://www.debian.org/security/ Moritz Muehlenhoff
October 25, 2020 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : openjdk-11
CVE ID : CVE-2020-14779 CVE-2020-14781 CVE-2020-14782 CVE-2020-14792
CVE-2020-14796 CVE-2020-14797 CVE-2020-14798 CVE-2020-14803
Several vulnerabilities have been discovered in the OpenJDK Java runtime,
which could result in denial of service, information disclosure, bypass of
access/sandbox restrictions or the acceptance of untrusted certificates.
For the stable distribution (buster), these problems have been fixed in
version 11.0.9+11-1~deb10u1.
We recommend that you upgrade your openjdk-11 packages.
For the detailed security status of openjdk-11 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/openjdk-11
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/