Format: 1.8 Date: Fri, 15 Oct 2010 16:05:20 +0200 Source: sun-java6 Binary: sun-java6-jre sun-java6-bin sun-java6-plugin ia32-sun-java6-bin ia32-sun-java6-plugin sun-java6-fonts sun-java6-jdk sun-java6-demo sun-java6-source sun-java6-javadb Architecture: amd64 amd64_translations Version: 6.22-0ubuntu1~9.04.1 Distribution: jaunty Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Matthias Klose Description: ia32-sun-java6-bin - Sun Java(TM) Runtime Environment (JRE) 6 (32-bit) ia32-sun-java6-plugin - The Java(TM) Plug-in, Java SE 6 (32-bit) sun-java6-bin - Sun Java(TM) Runtime Environment (JRE) 6 (architecture dependent sun-java6-demo - Sun Java(TM) Development Kit (JDK) 6 demos and examples sun-java6-fonts - Lucida TrueType fonts (from the Sun JRE) sun-java6-javadb - Java(TM) DB, Sun Microsystems' distribution of Apache Derby sun-java6-jdk - Sun Java(TM) Development Kit (JDK) 6 sun-java6-jre - Sun Java(TM) Runtime Environment (JRE) 6 (architecture independen sun-java6-plugin - The Java(TM) Plug-in, Java SE 6 sun-java6-source - Sun Java(TM) Development Kit (JDK) 6 source files Changes: sun-java6 (6.22-0ubuntu1~9.04.1) jaunty-security; urgency=low . * SECURITY UPDATE: multiple upstream vulnerabilities. Upstream fixes: - (CVE-2010-3556): JDK unspecified vulnerability in 2D component - (CVE-2010-3562): JDK IndexColorModel double-free - (CVE-2010-3565): JDK JPEG writeImage remote code execution - (CVE-2010-3566): JDK ICC Profile remote code execution - (CVE-2010-3567): Crash in ICU Opentype layout engine due to mismatch in character counts - (CVE-2010-3571): JDK unspecified vulnerability in 2D component - (CVE-2010-3554): JDK corba reflection vulnerabilities - (CVE-2010-3563): JDK unspecified vulnerability in Deployment component - (CVE-2010-3568): JDK Deserialization Race condition - (CVE-2010-3569): JDK Serialization inconsistencies - (CVE-2010-3558): JDK unspecified vulnerability in Java Web Start component - (CVE-2010-3552): JDK unspecified vulnerability in New Java Plugin component - (CVE-2010-3559): JDK unspecified vulnerability in Sound component - (CVE-2010-3572): JDK unspecified vulnerability in Sound component - (CVE-2010-3553): UIDefault.ProxyLazyValue has unsafe reflection usage - (CVE-2010-3555): JDK unspecified vulnerability in Deployment component - (CVE-2010-3550): JDK unspecified vulnerability in Java Web Start component - (CVE-2010-3570): JDK unspecified vulnerability in Deployment Toolkit - (CVE-2010-3561): Privileged ServerSocket.accept allows receiving connections from any host - (CVE-2009-3555): TLS: MITM attacks via session renegotiation - (CVE-2010-1321): krb5: null pointer dereference in GSS-API library leads to DoS - (CVE-2010-3549): HttpURLConnection chunked encoding issue (Http request splitting) - (CVE-2010-3557): JDK Swing mutable static - (CVE-2010-3541): limit setting of some request headers in HttpURLConnection - (CVE-2010-3573): limit HTTP request cookie headers in HttpURLConnection - (CVE-2010-3574): limit use of TRACE method in HttpURLConnection - (CVE-2010-3548): JDK DNS server IP address information leak - (CVE-2010-3551): NetworkInterface reveals local network address to untrusted code - (CVE-2010-3560): JDK unspecified vulnerability in Networking component Checksums-Sha1: ff874e73682369c7226a1780ed75070d83507091 27935244 sun-java6-bin_6.22-0ubuntu1~9.04.1_amd64.deb 764f70f9a3fae7d619eaa34fa17e3c5cefc09d6b 1904 sun-java6-plugin_6.22-0ubuntu1~9.04.1_amd64.deb aeaec27c8df98edb89bdb28f371d7b643abec8bf 29686582 ia32-sun-java6-bin_6.22-0ubuntu1~9.04.1_amd64.deb a4a98d1fa16dfb72a6695b4f95284cb38a62098f 19880796 sun-java6-jdk_6.22-0ubuntu1~9.04.1_amd64.deb e9725524a8e1e8befac957b7f037608d87db45b6 12164038 sun-java6-demo_6.22-0ubuntu1~9.04.1_amd64.deb 4ebb3555d8928482501633c00bb1a2065aa5e5dd 15665 sun-java6_6.22-0ubuntu1~9.04.1_amd64_translations.tar.gz Checksums-Sha256: 47f96aa47209baea7c0df090f65a81afd5def738d43d03979f329be12452f42c 27935244 sun-java6-bin_6.22-0ubuntu1~9.04.1_amd64.deb d017b4fcec3d5dd5e7ac19561467423c9bff9871ac4df76312d3bb4b56d951ed 1904 sun-java6-plugin_6.22-0ubuntu1~9.04.1_amd64.deb 5c7b68846a9a940b94e78d4ce17b4d6f1797a5376f2c55382fa426c11f0a1c7e 29686582 ia32-sun-java6-bin_6.22-0ubuntu1~9.04.1_amd64.deb a8596d6ae94afe1ceb7be0da5296f3fb441d05e810e30fcc1c4522b1165a8c56 19880796 sun-java6-jdk_6.22-0ubuntu1~9.04.1_amd64.deb 22bd37227573b2e4e87eedcd92f88a0c363384b89b270a4b29561d9d8e06c1cd 12164038 sun-java6-demo_6.22-0ubuntu1~9.04.1_amd64.deb fdd174fc96ec2d3c2f7a4370d1e45368deee7f133fa1fc939e8d0e233c47dc86 15665 sun-java6_6.22-0ubuntu1~9.04.1_amd64_translations.tar.gz Files: 41fe52b4723ca6161e7e7bb0323129c2 27935244 non-free/java optional sun-java6-bin_6.22-0ubuntu1~9.04.1_amd64.deb 3a3a4e29002ab0471013536819f29afd 1904 non-free/web optional sun-java6-plugin_6.22-0ubuntu1~9.04.1_amd64.deb 081deb18363901d59ada2954061545f6 29686582 non-free/java optional ia32-sun-java6-bin_6.22-0ubuntu1~9.04.1_amd64.deb e72034ef0214c4999121dc3ffbffe949 19880796 non-free/java optional sun-java6-jdk_6.22-0ubuntu1~9.04.1_amd64.deb 42366a38a8f8fd7925ac560e41f17b34 12164038 non-free/java optional sun-java6-demo_6.22-0ubuntu1~9.04.1_amd64.deb e08c64aa6134c15fc927ff6a34855f4c 15665 raw-translations - sun-java6_6.22-0ubuntu1~9.04.1_amd64_translations.tar.gz Original-Maintainer: Debian Java Maintainers