From andrew.gross at oracle.com Tue Apr 18 20:54:26 2023 From: andrew.gross at oracle.com (Andrew H. Gross) Date: Tue, 18 Apr 2023 13:54:26 -0700 Subject: OpenJDK Vulnerability Advisory: 2023/04/18 Message-ID: OpenJDK Vulnerability Advisory: 2023/04/18 vuln-report at openjdk.org https://openjdk.org/groups/vulnerability/advisories Releases affected: 8, 11, 17, and 20 OpenJDK CVEs: ??? CVE-2023-21930? CVE-2023-21937? CVE-2023-21938? CVE-2023-21939 ??? CVE-2023-21954? CVE-2023-21967? CVE-2023-21968 OpenJFX CVEs: ??? None Please note that defense-in-depth issues are not assigned CVEs. These issues have been addressed, as applicable, in the following releases: ? 8u372, 11.0.19, 17.0.7, and 20.0.1 We recommend that you upgrade to these new releases as soon as possible. For more detail about this advisory, please see: ? https://openjdk.org/groups/vulnerability/advisories/2023-04-18 -------------- next part -------------- A non-text attachment was scrubbed... Name: OpenPGP_0x27F209491C0FE9C1.asc Type: application/pgp-keys Size: 4134 bytes Desc: OpenPGP public key URL: -------------- next part -------------- A non-text attachment was scrubbed... Name: OpenPGP_signature Type: application/pgp-signature Size: 840 bytes Desc: OpenPGP digital signature URL: