From the dpkg terminal log, this is the relevant failure: Configurando ca-certificates-java (20100406ubuntu1~hardy1) ... creating /etc/ssl/certs/java/cacerts... added certificate cacert.org/cacert.org.crt added certificate gouv.fr/cert_igca_dsa.crt added certificate gouv.fr/cert_igca_rsa.crt added certificate mozilla/COMODO_Certification_Authority.crt error adding mozilla/COMODO_ECC_Certification_Authority.crt added certificate mozilla/Camerfirma_Chambers_of_Commerce_Root.crt added certificate mozilla/Camerfirma_Global_Chambersign_Root.crt added certificate mozilla/Certplus_Class_2_Primary_CA.crt added certificate mozilla/DST_ACES_CA_X6.crt added certificate mozilla/DST_Root_CA_X3.crt added certificate mozilla/DigiCert_Assured_ID_Root_CA.crt added certificate mozilla/DigiCert_Global_Root_CA.crt added certificate mozilla/DigiCert_High_Assurance_EV_Root_CA.crt added certificate mozilla/DigiNotar_Root_CA.crt added certificate mozilla/Entrust_Root_Certification_Authority.crt added certificate mozilla/Firmaprofesional_Root_CA.crt added certificate mozilla/GeoTrust_Global_CA_2.crt added certificate mozilla/GeoTrust_Primary_Certification_Authority.crt added certificate mozilla/GeoTrust_Universal_CA.crt added certificate mozilla/GeoTrust_Universal_CA_2.crt added certificate mozilla/GlobalSign_Root_CA_-_R2.crt added certificate mozilla/Go_Daddy_Class_2_CA.crt added certificate mozilla/NetLock_Business_=Class_B=_Root.crt added certificate mozilla/NetLock_Express_=Class_C=_Root.crt added certificate mozilla/NetLock_Notary_=Class_A=_Root.crt added certificate mozilla/NetLock_Qualified_=Class_QA=_Root.crt added certificate mozilla/Network_Solutions_Certificate_Authority.crt added certificate mozilla/QuoVadis_Root_CA_2.crt added certificate mozilla/QuoVadis_Root_CA_3.crt added certificate mozilla/SecureTrust_CA.crt added certificate mozilla/Secure_Global_CA.crt added certificate mozilla/Starfield_Class_2_CA.crt added certificate mozilla/StartCom_Certification_Authority.crt added certificate mozilla/StartCom_Ltd..crt added certificate mozilla/SwissSign_Gold_CA_-_G2.crt added certificate mozilla/SwissSign_Platinum_CA_-_G2.crt added certificate mozilla/SwissSign_Silver_CA_-_G2.crt added certificate mozilla/Swisscom_Root_CA_1.crt added certificate mozilla/TURKTRUST_Certificate_Services_Provider_Root_1.crt added certificate mozilla/TURKTRUST_Certificate_Services_Provider_Root_2.crt added certificate mozilla/Taiwan_GRCA.crt added certificate mozilla/VeriSign_Class_3_Public_Primary_Certification_Authority_-_G5.crt added certificate mozilla/WellsSecure_Public_Root_Certificate_Authority.crt added certificate mozilla/Wells_Fargo_Root_CA.crt added certificate mozilla/XRamp_Global_CA_Root.crt added certificate mozilla/thawte_Primary_Root_CA.crt added certificate spi-inc.org/spi-ca-2003.crt added certificate spi-inc.org/spi-cacert-2008.crt added certificate telesec.de/deutsche-telekom-root-ca-2.crt failed (VM used: java-6-openjdk). dpkg: erro processando ca-certificates-java (--configure): I've typically seen that failure from ca-certificates-java when it's attempted to allocate too much memory. You might try running the upgrade in a shell where you've reduced the virtual memory size allowed to the process to half of RAM or so, via ulimit -v. Another oddity about your log is that it appears ca-certificates-java from hardy is getting installed, despite your OS version being karmic.