openjdk-6b18 6b18-1.8.10-0ubuntu1~10.04.2 source package in Ubuntu

Changelog

openjdk-6b18 (6b18-1.8.10-0ubuntu1~10.04.2) lucid-security; urgency=low

  * SECURITY UPDATE: Same Origin Policy (SOP) bypass flaw
    - debian/patches/SOP-bypass-icedtea6-1.8.patch: Remove special
      case for SocketPermission.
    - CVE-2011-3377
    - Applied inline due to needing to apply patches only once for netx,
      not for every vm

openjdk-6b18 (6b18-1.8.10-0ubuntu1~10.04.1) lucid-security; urgency=low

  * SECURITY UPDATE: IcedTea6 1.8.10 release (LP: #878684)
    - security fixes:
      - S7000600, CVE-2011-3547: InputStream skip() information leak
      - S7019773, CVE-2011-3548: mutable static AWTKeyStroke.ctor
      - S7023640, CVE-2011-3551: Java2D TransformHelper integer
        overflow
      - S7032417, CVE-2011-3552: excessive default UDP socket limit
        under SecurityManager
      - S7046794, CVE-2011-3553: JAX-WS stack-traces information leak
      - S7046823, CVE-2011-3544: missing SecurityManager checks in
        scripting engine
      - S7055902, CVE-2011-3521: IIOP deserialization code execution
      - S7057857, CVE-2011-3554: insufficient pack200 JAR files
        uncompress error checks
      - S7064341, CVE-2011-3389: HTTPS: block-wise chosen-plaintext
        attack against SSL/TLS (BEAST)
      - S7077466, CVE-2011-3556: RMI DGC server remote code execution
      - S7083012, CVE-2011-3557: RMI registry privileged code execution
      - S7096936, CVE-2011-3560: missing checkSetFactory calls in
        HttpsURLConnection
    - unapplied previous updates inline changes as they were
      incorporated upstream; remaining changes in Makefile.{in,am} and
      ports/hotspot/make/linux/makefiles/zeroshark.make
 -- Steve Beattie <email address hidden>   Tue, 08 Nov 2011 14:08:52 -0800

Upload details

Uploaded by:
Steve Beattie
Uploaded to:
Lucid
Original maintainer:
Ubuntu Developers
Architectures:
armel
Section:
java
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Lucid: [FULLYBUILT] armel

Downloads

File Size SHA-256 Checksum
openjdk-6b18_6b18-1.8.10.orig.tar.gz 70.0 MiB d3d6439583af7de6580c6659a8c5a454616c0d50e0adef2d3d16e22176db375a
openjdk-6b18_6b18-1.8.10-0ubuntu1~10.04.2.diff.gz 135.5 KiB 465e979473406576d601c984a27f25c19fdaa3139caaf538536704cc1f4b4763
openjdk-6b18_6b18-1.8.10-0ubuntu1~10.04.2.dsc 3.1 KiB 1c6f2833be0872685569af94949aa7aef5273f38d15b8d03d4d5a01e00312b5a

View changes file

Binary packages built by this source

icedtea-6-jre-cacao: No summary available for icedtea-6-jre-cacao in ubuntu lucid.

No description available for icedtea-6-jre-cacao in ubuntu lucid.

icedtea6-plugin: No summary available for icedtea6-plugin in ubuntu lucid.

No description available for icedtea6-plugin in ubuntu lucid.

openjdk-6-dbg: No summary available for openjdk-6-dbg in ubuntu lucid.

No description available for openjdk-6-dbg in ubuntu lucid.

openjdk-6-demo: No summary available for openjdk-6-demo in ubuntu lucid.

No description available for openjdk-6-demo in ubuntu lucid.

openjdk-6-jdk: No summary available for openjdk-6-jdk in ubuntu lucid.

No description available for openjdk-6-jdk in ubuntu lucid.

openjdk-6-jre: No summary available for openjdk-6-jre in ubuntu lucid.

No description available for openjdk-6-jre in ubuntu lucid.

openjdk-6-jre-headless: No summary available for openjdk-6-jre-headless in ubuntu lucid.

No description available for openjdk-6-jre-headless in ubuntu lucid.