ELA-789-1 openjdk-8 security update

sandbox bypass

2023-01-31
Packageopenjdk-8
Version8u362-ga-1~deb8u1 (jessie), 8u362-ga-1~deb9u1 (stretch)
Related CVEs CVE-2023-21830 CVE-2023-21843


Several vulnerabilities have been discovered in the OpenJDK Java runtime, resulting in bypass of sandbox restrictions.



For Debian 8 jessie, these problems have been fixed in version 8u362-ga-1~deb8u1.

For Debian 9 stretch, these problems have been fixed in version 8u362-ga-1~deb9u1.

We recommend that you upgrade your openjdk-8 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.