~ubuntu-branches/ubuntu/natty/openjdk-6/natty-security

Viewing all changes in revision 144.

  • Committer: Package Import Robot
  • Author(s): Matthias Klose
  • Date: 2011-10-22 12:07:52 UTC
  • mfrom: (0.69.4)
  • Revision ID: package-import@ubuntu.com-20111022120752-3draavcem7z20r9a
Tags: 6b22-1.10.4-0ubuntu1~11.04.1
* SECURITY UPDATE: IcedTea6 1.10.4 Release:
  - Security fixes:
    - S7000600, CVE-2011-3547: InputStream skip() information leak.
    - S7019773, CVE-2011-3548: mutable static AWTKeyStroke.ctor.
    - S7023640, CVE-2011-3551: Java2D TransformHelper integer overflow.
    - S7032417, CVE-2011-3552: excessive default UDP socket limit under
      SecurityManager.
    - S7046794, CVE-2011-3553: JAX-WS stack-traces information leak.
    - S7046823, CVE-2011-3544: missing SecurityManager checks in scripting
      engine.
    - S7055902, CVE-2011-3521: IIOP deserialization code execution.
    - S7057857, CVE-2011-3554: insufficient pack200 JAR files uncompress
      error checks.
    - S7064341, CVE-2011-3389: HTTPS: block-wise chosen-plaintext attack
      against SSL/TLS (BEAST).
    - S7070134, CVE-2011-3558: HotSpot crashes with sigsegv from
      PorterStemmer.
    - S7077466, CVE-2011-3556: RMI DGC server remote code execution.
    - S7083012, CVE-2011-3557: RMI registry privileged code execution.
    - S7096936, CVE-2011-3560: missing checkSetFactory calls in
      HttpsURLConnection.

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: