From 6cbb09369fa1fdbefdb53c3a5da6f6434b9524ae Mon Sep 17 00:00:00 2001 From: idk <hankhill19580@gmail.com> Date: Thu, 21 Apr 2022 13:10:01 -0400 Subject: [PATCH] Blog post for Jpackge Updates --- .../blog/2022/4/21/Easy-Install-Updates.html | 29 +++++++++++++++++++ 1 file changed, 29 insertions(+) create mode 100644 i2p2www/blog/2022/4/21/Easy-Install-Updates.html diff --git a/i2p2www/blog/2022/4/21/Easy-Install-Updates.html b/i2p2www/blog/2022/4/21/Easy-Install-Updates.html new file mode 100644 index 000000000..b66299379 --- /dev/null +++ b/i2p2www/blog/2022/4/21/Easy-Install-Updates.html @@ -0,0 +1,29 @@ +=========================================== +{% trans -%}Jpackage Update for Java CVE-2022-21449{%- endtrans %} +=========================================== + +.. meta:: + :author: idk + :date: 2022-04-21 + :category: release + :excerpt: {% trans %}Jpackage bundles released with fixes for Java CVE-2022-21449{% endtrans %} + +{% trans -%} +Update details +{%- endtrans %} +============================================ + +{% trans -%} +New I2P Easy-Install bundles have been generated using the latest release of the +Java Virtual Machine which contains a fix for CVE-2022-21449 +"Psychic Signatures." It is recommended that users of the easy-install bundles +update as soon as possible. +{%- endtrans %} + +{% trans -%} +The I2P router on Linux uses the Java Virtual Machine configured by the host +system. Users on those platforms should downgrade to a stable Java version below +Java 14 in order to mitigate the vulnerability until updates are released by +the package maintainers. Other users using an external JVM should update as soon +the JVM to a fixed version as soon as possible. +{%- endtrans %} -- GitLab