AVG-2481 log

Package java8-openjfx, java8-openjfx-src
Status Unknown
Severity High
Type multiple issues
Affected 8.u202-3
Fixed Unknown
Current Removed
Ticket FS#72535
Created Wed Oct 20 11:22:15 2021
Issue Severity Remote Type Description
CVE-2021-3522 Medium Yes Arbitrary filesystem access
A security issue has been found in OpenJFX before version 8u312 in the javafx/media component. An easily exploitable vulnerability allows unauthenticated...
CVE-2021-3517 High Yes Arbitrary code execution
A heap-based buffer overflow was found in libxml2 before version 2.9.11, as packaged in OpenJFX before version 8u312 in the javafx/web component, when...
References
https://openjdk.java.net/groups/vulnerability/advisories/2021-10-19
https://www.oracle.com/security-alerts/cpuoct2021verbose.html#JAVA