Format: 1.8 Date: Tue, 14 Feb 2017 02:27:53 +0000 Source: openjdk-6 Binary: openjdk-6-jdk openjdk-6-jre-headless openjdk-6-jre openjdk-6-jre-lib openjdk-6-demo openjdk-6-source openjdk-6-doc openjdk-6-dbg icedtea-6-jre-cacao icedtea-6-jre-jamvm openjdk-6-jre-zero Architecture: i386 all Version: 6b41-1.13.13-0ubuntu0.14.04.1 Distribution: trusty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Tiago Stürmer Daitx Description: icedtea-6-jre-cacao - Alternative JVM for OpenJDK, using Cacao icedtea-6-jre-jamvm - Alternative JVM for OpenJDK, using JamVM openjdk-6-dbg - Java runtime based on OpenJDK (debugging symbols) openjdk-6-demo - Java runtime based on OpenJDK (demos and examples) openjdk-6-doc - OpenJDK Development Kit (JDK) documentation openjdk-6-jdk - OpenJDK Development Kit (JDK) openjdk-6-jre - OpenJDK Java runtime, using ${vm:Name} openjdk-6-jre-headless - OpenJDK Java runtime, using ${vm:Name} (headless) openjdk-6-jre-lib - OpenJDK Java runtime (architecture independent libraries) openjdk-6-jre-zero - Alternative JVM for OpenJDK, using Zero/Shark openjdk-6-source - OpenJDK Development Kit (JDK) source files Changes: openjdk-6 (6b41-1.13.13-0ubuntu0.14.04.1) trusty-security; urgency=medium . * IcedTea 1.13.12 release. * Security fixes backported from 8u121: - S8168714, CVE-2016-5546: ECDSA will accept signatures that have various extraneous bytes added to them whereas the signature is supposed to be unique. - S8166988, CVE-2017-3253: The PNG specification allows the [iz}Txt sections to be 2^32-1 bytes long so these should not be uncompressed unless the user explicitly requests it. - S8168728, CVE-2016-5548: DSA signing exhibits a timing bias that may leak information about k. - S8161743, CVE-2017-3252: LdapLoginModule incorrectly tries to deserialize responses from an LDAP server when an LDAP context is expected. - S8167223, CVE-2016-5552: Parsing of URLs can be inconsistent with how users or external applications would interpret them leading to possible security issues. - S8164147, CVE-2017-3261: An integer overflow exists in SocketOutputStream which can lead to memorydisclosure. - S8151934, CVE-2017-3231: Under some circumstances URLClassLoader will dispatch HTTP GET requests where the invoker does not have permission. - S8165071, CVE-2016-2183: 3DES can be exploited for block collisions when long running sessions are allowed. - S8165344, CVE-2017-3272: A protected field can be leveraged into type confusion. - S8156802, CVE-2017-3241: RMI deserialization should limit the types deserialized to prevent attacks that could escape the sandbox. * debian/patches/it-add-cpp-flags.patch: refreshed. * debian/patches/it-jamvm-2.0.0.patch: refreshed. * debian/patches/it-emacs-mode.patch: refreshed. * debian/patches/hotspot-disable-arm32-jit.diff: removed, ARM32 JIT is now disabled by default on icedtea. * debian/patches/zero-missing-headers.diff: removed, fix applied upstream. * debian/repack: fix jamvm url. Checksums-Sha1: 1564ef834cddc32175b5a10d77f1e44d8e41fd6a 15140464 openjdk-6-jdk_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 035218621cfcb1769a043eeed933e2d22ead307b 32836218 openjdk-6-jre-headless_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb c4c1914e7ca3a445c139144ce2a84db7ec053f95 188378 openjdk-6-jre_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 3d7b25918d7774bde98031d5175fea42c2019d0f 1966808 openjdk-6-demo_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 1aee56625e690e8458106b59e0abffcccece7dbb 102759094 openjdk-6-dbg_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb f40b09d2e369377bb572c2de21e3b41ea48f1077 325714 icedtea-6-jre-cacao_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 9778417b397125fd525625b26d7a2c10116c1d31 396612 icedtea-6-jre-jamvm_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 60ea6d781c724fcbf82c61a7064a5c1ec7c01d15 1714322 openjdk-6-jre-zero_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 10d8e193e8fb3e929c423e5b069e27101d2187a5 6006670 openjdk-6-jre-lib_6b41-1.13.13-0ubuntu0.14.04.1_all.deb 2a5c407340ed29884eda8d2655a8e8500d5f0695 39917370 openjdk-6-source_6b41-1.13.13-0ubuntu0.14.04.1_all.deb 5fab6206e17d486143d779f0b32fe0efcc5ae67f 10173144 openjdk-6-doc_6b41-1.13.13-0ubuntu0.14.04.1_all.deb Checksums-Sha256: 2dd36527c9eaffd7588a669be7c6c8c32d5530c4ff245b61fe6e1029ea3db24f 15140464 openjdk-6-jdk_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb a3b2a6b66f9f3963f0d3ae3001a2eb263ba311ad218942343591837e0c1fb07b 32836218 openjdk-6-jre-headless_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 548a34f921c4ab19e03bc35d5b2d162dbff1e317238f0a5d5bfe375c3830610a 188378 openjdk-6-jre_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb dc9e6aa5467fb924b30ed7bf7cac7c794a203aea7cfb05f2992385e95bd3af85 1966808 openjdk-6-demo_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 5d94dcd9b988a2d9b5ff13d2ae5d1a07d0fa048ebea9786c94f5f919c84de401 102759094 openjdk-6-dbg_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb f8ebd0a582a760c4afef7cde26a1142577d7322a622c8b819072f196f47ada1d 325714 icedtea-6-jre-cacao_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb e541474d251a793747dc3e80beaf77540ab1bfc5bbdfae1cabe1bccdb7b41d4c 396612 icedtea-6-jre-jamvm_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 7c0978bc5de47fe3e9559b53112a24684eac95e0493e81040b229304fa70e8b3 1714322 openjdk-6-jre-zero_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb e9e2e72d9f81099b4d369fa27d0c470660d74b55c056ea959ece9435c65f0119 6006670 openjdk-6-jre-lib_6b41-1.13.13-0ubuntu0.14.04.1_all.deb 659fdf585a0ea1bde888ae0858358977d6dda18b8ce0887028ba7dcc1a4915f7 39917370 openjdk-6-source_6b41-1.13.13-0ubuntu0.14.04.1_all.deb ad136e4f49182e54aa1b5fd5b68e85d1afc38025d27e7abdd6f880615096cbd0 10173144 openjdk-6-doc_6b41-1.13.13-0ubuntu0.14.04.1_all.deb Files: c9ca2c2428b0236ec62e7c3441d05ada 15140464 java optional openjdk-6-jdk_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb e4f36c5a476204f80ee50e03d0e4f5b0 32836218 java optional openjdk-6-jre-headless_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 1fc4584315a44e45cd165c59a0b970d5 188378 java optional openjdk-6-jre_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 7e9260d52cb7f0a1b0a463d5a5528cf8 1966808 java extra openjdk-6-demo_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 1fd905ca19259e4b25178f49d117b470 102759094 debug extra openjdk-6-dbg_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 45ed337ae042ffd18e30ed90ce70eabd 325714 java extra icedtea-6-jre-cacao_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb d915ab566fe13f9d358e25386f1c3742 396612 java extra icedtea-6-jre-jamvm_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb 59f7aefa6853f3308c8d49ca92840f64 1714322 java extra openjdk-6-jre-zero_6b41-1.13.13-0ubuntu0.14.04.1_i386.deb b13945eae8b33258096bb1b3c2a7d884 6006670 java optional openjdk-6-jre-lib_6b41-1.13.13-0ubuntu0.14.04.1_all.deb 26427d3d81d9a8cea5ee0b0be277db51 39917370 java extra openjdk-6-source_6b41-1.13.13-0ubuntu0.14.04.1_all.deb 51125f329fb71d6e4fa573c6f76f0f2e 10173144 doc extra openjdk-6-doc_6b41-1.13.13-0ubuntu0.14.04.1_all.deb Original-Maintainer: OpenJDK Team