[Git][security-tracker-team/security-tracker][master] new Java issues

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Oct 20 11:22:42 BST 2021



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
14ccb393 by Moritz Muehlenhoff at 2021-10-20T12:22:23+02:00
new Java issues

- - - - -


2 changed files:

- data/CVE/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -17946,6 +17946,9 @@ CVE-2021-35604
 	RESERVED
 CVE-2021-35603
 	RESERVED
+	- openjdk-17 <unfixed>
+	- openjdk-11 <unfixed>
+	- openjdk-8 <unfixed>
 CVE-2021-35602
 	RESERVED
 CVE-2021-35601
@@ -17976,10 +17979,14 @@ CVE-2021-35589
 	RESERVED
 CVE-2021-35588
 	RESERVED
+	- openjdk-8 <unfixed>
 CVE-2021-35587
 	RESERVED
 CVE-2021-35586
 	RESERVED
+	- openjdk-17 <unfixed>
+	- openjdk-11 <unfixed>
+	- openjdk-8 <unfixed>
 CVE-2021-35585
 	RESERVED
 CVE-2021-35584
@@ -17996,6 +18003,9 @@ CVE-2021-35579
 	RESERVED
 CVE-2021-35578
 	RESERVED
+	- openjdk-17 <unfixed>
+	- openjdk-11 <unfixed>
+	- openjdk-8 <unfixed>
 CVE-2021-35577
 	RESERVED
 CVE-2021-35576
@@ -18018,28 +18028,46 @@ CVE-2021-35568
 	RESERVED
 CVE-2021-35567
 	RESERVED
+	- openjdk-17 <unfixed>
+	- openjdk-11 <unfixed>
+	- openjdk-8 <unfixed>
 CVE-2021-35566
 	RESERVED
 CVE-2021-35565
 	RESERVED
+	- openjdk-11 <unfixed>
+	- openjdk-8 <unfixed>
 CVE-2021-35564
 	RESERVED
+	- openjdk-17 <unfixed>
+	- openjdk-11 <unfixed>
+	- openjdk-8 <unfixed>
 CVE-2021-35563
 	RESERVED
 CVE-2021-35562
 	RESERVED
 CVE-2021-35561
 	RESERVED
+	- openjdk-17 <unfixed>
+	- openjdk-11 <unfixed>
+	- openjdk-8 <unfixed>
 CVE-2021-35560
 	RESERVED
+	TODO: doublecheck for more details, Deployment components not part of OpenJDK, only present in Oracle Java
 CVE-2021-35559
 	RESERVED
+	- openjdk-17 <unfixed>
+	- openjdk-11 <unfixed>
+	- openjdk-8 <unfixed>
 CVE-2021-35558
 	RESERVED
 CVE-2021-35557
 	RESERVED
 CVE-2021-35556
 	RESERVED
+	- openjdk-17 <unfixed>
+	- openjdk-11 <unfixed>
+	- openjdk-8 <unfixed>
 CVE-2021-35555
 	RESERVED
 CVE-2021-35554
@@ -18052,6 +18080,8 @@ CVE-2021-35551
 	RESERVED
 CVE-2021-35550
 	RESERVED
+	- openjdk-11 <unfixed>
+	- openjdk-8 <unfixed>
 CVE-2021-35549
 	RESERVED
 CVE-2021-35548
@@ -18079,7 +18109,7 @@ CVE-2021-35539
 	RESERVED
 CVE-2021-35538
 	RESERVED
-	- virtualbox 6.1.28-dfsg-1
+	- virtualbox <not-affected> (Windows-specific)
 CVE-2021-35537
 	RESERVED
 CVE-2021-35536


=====================================
data/dsa-needed.txt
=====================================
@@ -37,6 +37,8 @@ ndpi/oldstable
 --
 nodejs (jmm)
 --
+openjdk-11 (jmm)
+--
 puppetdb (jmm)
 --
 python-pysaml2 (jmm)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/14ccb3938077d2e05b29f338a0b2e90e37a8d5f0

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/14ccb3938077d2e05b29f338a0b2e90e37a8d5f0
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20211020/0354e7d6/attachment.htm>


More information about the debian-security-tracker-commits mailing list