[DSA 6431-1] openjdk-25 security update
Moritz Muehlenhoff <[email protected]>
| Newsgroups | gmane.linux.debian.user.security.announce |
|---|---|
| Message-ID | <[email protected]> |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-6431-1 [email protected] https://www.debian.org/security/ Moritz Muehlenhoff August 11, 2026 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : openjdk-25 CVE ID : CVE-2026-41254 CVE-2026-46917 CVE-2026-46968 CVE-2026-47010 CVE-2026-47021 CVE-2026-47027 CVE-2026-47059 CVE-2026-47063 CVE-2026-60147 Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in incorrect validation of certificates or signed Jar files, denial of service or information disclosure. For the stable distribution (trixie), these problems have been fixed in version 25.0.4+7-1~deb13u1. We recommend that you upgrade your openjdk-25 packages. For the detailed security status of openjdk-25 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/openjdk-25 Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: [email protected] -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmp7laMACgkQEMKTtsN8 TjZ2/Q/8C0rYUI9gg038OxbsyFyK/8Dp3GmYQEybyUKYuPc0h4OJKonanfrNtIVC d5h0Lzz06ixU2TmHRyThZjWby5OkN9FV390v7d/h2kLJVtEMe8OpQN4ripJNo6UA FcSeFV4+aFwHLAIEiRnnPWmhXxFW8PCKbCfU9BCkGMgwQQ9DWjktYl4kTWsItsis A9exEHHIsx3SlezMMSysLAbYD6FovfRtauXDsx6AhE5oateJxlRT+mq9obqdjBaG 8S4OeSmrS2y/w4H3i/qS4Kcw+Xg1syIj5Xy+79tWkhlFPPA8iQyEcnCQ5Fo4Ju9r vUAXoEq0oOTxgvCtn6AfRtVMW286Q5LsGOSU48ocMBQ2h24CjMo4+dpNqu3BJYcf wO4Seq0I0S8a8aA/EOWWPfW9xlzpDA8mmQ1mW8IXyIXJqroWzypKifZMFnchB4h5 oEHsPxg2XAOl/VlO1/ApyhjvhrOzNWB/u3Hj0fLxV8b1i8cJHo6RnMxRNbhImwFO ZotFqH1XYkV2s2TNWOx6Ghk5iQ7s/7QtvPrsHxKgFFqd1aUO0DjFlrXDMuJj7oSf sqcGiv2nZB5arAEYF0cUd4OqSy81ec9zXlRqiOPNf/Wzhw36g5j0NygxFaWsRQbj HfenmPBcTdIFKBdArPh4EutmDsANbNC96DpeVSD/Ks8t1uAKm0A= =Y+Mq -----END PGP SIGNATURE-----