OpenJDK Vulnerability Advisory: 2022/07/19

Andrew H. Gross andrew.gross at oracle.com
Tue Jul 19 20:10:15 UTC 2022


vuln-report at openjdk.java.net
https://openjdk.java.net/groups/vulnerability/advisories

Releases affected: 7, 8, 11, 13, 15, 17, and 18



OpenJDK CVEs:
     CVE-2022-21540  CVE-2022-21541  CVE-2022-21549  CVE-2022-34169



OpenJFX CVEs:
     None



Please note that defense-in-depth issues are not assigned CVEs.

These issues have been addressed, as applicable, in the following releases:
   7u351, 8u342, 11.0.16, 13.0.12, 15.0.8, 17.0.4, and 18.0.2

We recommend that you upgrade to these new releases as soon as possible.

For more detail about this advisory, please see:
https://openjdk.java.net/groups/vulnerability/advisories/2022-07-19
-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_0x27F209491C0FE9C1.asc
Type: application/pgp-keys
Size: 4134 bytes
Desc: OpenPGP public key
URL: <https://mail.openjdk.org/pipermail/vuln-announce/attachments/20220719/e5271184/OpenPGP_0x27F209491C0FE9C1.asc>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature
Type: application/pgp-signature
Size: 840 bytes
Desc: OpenPGP digital signature
URL: <https://mail.openjdk.org/pipermail/vuln-announce/attachments/20220719/e5271184/OpenPGP_signature.sig>


More information about the vuln-announce mailing list