ELA-1809-1 ca-certificates-java bugfix update

bug fix update

2026-08-14
Packageca-certificates-java
Version20230710~deb12u1~deb11u1~deb10u2~deb9u1 (stretch), 20230710~deb12u1~deb11u1~deb10u2 (buster)


The ca-certificates-java package needs to be upgraded.

For Debian 10 buster, this is a minor update to make sure that the Java keystore isn’t modified in case the default Java runtime is GCJ (GNU Java runtime).

For Debian 9 stretch, this is an upgrade to resolve a circular dependency between Java packages and ca-certificates, which would otherwise prevent the system certificates from being updated (this was applied to Debian buster in ELA-1514-1). We also make sure that that the Java keystore isn’t modified in case the default Java runtime is GCJ (GNU Java runtime).



For Debian 10 buster, these problems have been fixed in version 20230710~deb12u1~deb11u1~deb10u2.

For Debian 9 stretch, these problems have been fixed in version 20230710~deb12u1~deb11u1~deb10u2~deb9u1.

We recommend that you upgrade your ca-certificates-java packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.