[ubuntu/oneiric] openjdk-6 6b23~pre3-0ubuntu1 (Accepted)

Matthias Klose doko at ubuntu.com
Thu Jul 7 22:20:36 UTC 2011


openjdk-6 (6b23~pre3-0ubuntu1) oneiric; urgency=low

  * Update to the b23-05_jul_2011 tarball.
    - Includes fixes for security issues:
    - S6213702, CVE-2011-0872: (so) non-blocking sockets with TCP urgent
      disabled get still selected for read ops (win)
    - S6618658, CVE-2011-0865: Vulnerability in deserialization
    - S7012520, CVE-2011-0815: Heap overflow vulnerability in
      FileDialog.show()
    - S7013519, CVE-2011-0822, CVE-2011-0862: Integer overflows in 2D code
    - S7013969, CVE-2011-0867: NetworkInterface.toString can reveal
      bindings
    - S7013971, CVE-2011-0869: Vulnerability in SAAJ
    - S7016340, CVE-2011-0870: Vulnerability in SAAJ
    - S7016495, CVE-2011-0868: Crash in Java 2D transforming an image with
      scale close to zero
    - S7020198, CVE-2011-0871: ImageIcon creates Component with null acc
    - S7020373, CVE-2011-0864: JSR rewriting can overflow memory address
      size variables
  * Don't build with -Werror on sparc.
  * Build shark using llvm-2.9.

Date: Thu, 07 Jul 2011 22:31:12 +0200
Changed-By: Matthias Klose <doko at ubuntu.com>
Maintainer: OpenJDK Team <openjdk at lists.launchpad.net>
https://launchpad.net/ubuntu/oneiric/+source/openjdk-6/6b23~pre3-0ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Thu, 07 Jul 2011 22:31:12 +0200
Source: openjdk-6
Binary: openjdk-6-jdk openjdk-6-jre-headless openjdk-6-jre openjdk-6-jre-lib openjdk-6-demo openjdk-6-source openjdk-6-doc openjdk-6-dbg icedtea-6-jre-cacao icedtea-6-jre-jamvm openjdk-6-jre-zero
Architecture: source
Version: 6b23~pre3-0ubuntu1
Distribution: oneiric
Urgency: low
Maintainer: OpenJDK Team <openjdk at lists.launchpad.net>
Changed-By: Matthias Klose <doko at ubuntu.com>
Description: 
 icedtea-6-jre-cacao - Alternative JVM for OpenJDK, using Cacao
 icedtea-6-jre-jamvm - Alternative JVM for OpenJDK, using JamVM
 openjdk-6-dbg - Java runtime based on OpenJDK (debugging symbols)
 openjdk-6-demo - Java runtime based on OpenJDK (demos and examples)
 openjdk-6-doc - OpenJDK Development Kit (JDK) documentation
 openjdk-6-jdk - OpenJDK Development Kit (JDK)
 openjdk-6-jre - OpenJDK Java runtime, using ${vm:Name}
 openjdk-6-jre-headless - OpenJDK Java runtime, using ${vm:Name} (headless)
 openjdk-6-jre-lib - OpenJDK Java runtime (architecture independent libraries)
 openjdk-6-jre-zero - Alternative JVM for OpenJDK, using Zero/Shark
 openjdk-6-source - OpenJDK Development Kit (JDK) source files
Changes: 
 openjdk-6 (6b23~pre3-0ubuntu1) oneiric; urgency=low
 .
   * Update to the b23-05_jul_2011 tarball.
     - Includes fixes for security issues:
     - S6213702, CVE-2011-0872: (so) non-blocking sockets with TCP urgent
       disabled get still selected for read ops (win)
     - S6618658, CVE-2011-0865: Vulnerability in deserialization
     - S7012520, CVE-2011-0815: Heap overflow vulnerability in
       FileDialog.show()
     - S7013519, CVE-2011-0822, CVE-2011-0862: Integer overflows in 2D code
     - S7013969, CVE-2011-0867: NetworkInterface.toString can reveal
       bindings
     - S7013971, CVE-2011-0869: Vulnerability in SAAJ
     - S7016340, CVE-2011-0870: Vulnerability in SAAJ
     - S7016495, CVE-2011-0868: Crash in Java 2D transforming an image with
       scale close to zero
     - S7020198, CVE-2011-0871: ImageIcon creates Component with null acc
     - S7020373, CVE-2011-0864: JSR rewriting can overflow memory address
       size variables
   * Don't build with -Werror on sparc.
   * Build shark using llvm-2.9.
Checksums-Sha1: 
 af4187e8e5188f8a14e6e2f28bf6c0146b6e7414 2336 openjdk-6_6b23~pre3-0ubuntu1.dsc
 7a5678f8659e987760f9f3772c031969ae6b54f9 66284198 openjdk-6_6b23~pre3.orig.tar.gz
 aa55a4283f056579a95feea78da05537ce497aa9 134304 openjdk-6_6b23~pre3-0ubuntu1.diff.gz
Checksums-Sha256: 
 27e60c7a9778366e0db604348f0265c70564a838afde36c113c4a012f8aeb75b 2336 openjdk-6_6b23~pre3-0ubuntu1.dsc
 50f542d4b2e494cd8c81f8e50951996b2cd2c05580265affd9113007fbd2c5ac 66284198 openjdk-6_6b23~pre3.orig.tar.gz
 cf734c34f4c18a762e050911d2a41dd95f62be147c13c694e6d50e58e915b45d 134304 openjdk-6_6b23~pre3-0ubuntu1.diff.gz
Files: 
 ff05c9665f5e3601abb5abccf3f9a5c8 2336 java optional openjdk-6_6b23~pre3-0ubuntu1.dsc
 a7880850555ad776d80ba5dddb2e558a 66284198 java optional openjdk-6_6b23~pre3.orig.tar.gz
 221477b1f0c23b1fadf07906c1e84630 134304 java optional openjdk-6_6b23~pre3-0ubuntu1.diff.gz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iEYEARECAAYFAk4WMLIACgkQStlRaw+TLJzFWgCeMaCPU+aJex7G4mGDm7WCp5Ol
w94AoJR/t/TvgB7HBEgUe1MnVLDVmG13
=YVYs
-----END PGP SIGNATURE-----


More information about the Oneiric-changes mailing list