-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 09 Jun 2011 23:15:49 +0200 Source: sun-java6 Binary: sun-java6-jre sun-java6-bin sun-java6-plugin ia32-sun-java6-bin ia32-sun-java6-plugin sun-java6-fonts sun-java6-jdk sun-java6-demo sun-java6-source sun-java6-doc sun-java6-javadb Architecture: i386 Version: 6-26-0lenny1 Distribution: lenny Urgency: high Maintainer: i386 Build Daemon Changed-By: Torsten Werner Description: ia32-sun-java6-bin - Sun Java(TM) Runtime Environment (JRE) 6 (32-bit) ia32-sun-java6-plugin - The Java(TM) Plug-in, Java SE 6 (32-bit) sun-java6-bin - Sun Java(TM) Runtime Environment (JRE) 6 (architecture dependent sun-java6-demo - Sun Java(TM) Development Kit (JDK) 6 demos and examples sun-java6-doc - Sun JDK(TM) Documention -- integration installer sun-java6-fonts - Lucida TrueType fonts (from the Sun JRE) sun-java6-javadb - Java(TM) DB, Sun Microsystems' distribution of Apache Derby sun-java6-jdk - Sun Java(TM) Development Kit (JDK) 6 sun-java6-jre - Sun Java(TM) Runtime Environment (JRE) 6 (architecture independen sun-java6-plugin - The Java(TM) Plug-in, Java SE 6 sun-java6-source - Sun Java(TM) Development Kit (JDK) 6 source files Closes: 629852 Changes: sun-java6 (6-26-0lenny1) oldstable; urgency=high . [ Sylvestre Ledru ] * New upstream release (Closes: #629852) * SECURITY UPDATE: multiple upstream vulnerabilities. Upstream fixes: - (CVE-2011-0862): integer overflows in JPEGImageReader and font SunLayoutEngine (2D, 7013519) - (CVE-2011-0873): unspecified vulnerability fixed in 6u26 (2D) - (CVE-2011-0815): FileDialog.show() buffer overflow (AWT, 7012520) - (CVE-2011-0817): unspecified vulnerabilities fixed in 6u26 (Deployment, JRE) - (CVE-2011-0863): unspecified vulnerability fixed in 6u26 (Deployment) - (CVE-2011-0864): JVM memory corruption via certain bytecode (HotSpot, 7020373) - (CVE-2011-0802): unspecified vulnerabilities fixed in 6u26 (Sound) - (CVE-2011-0814): unspecified vulnerabilities fixed in 6u26 (Sound) - (CVE-2011-0871): MediaTracker created Component instances with unnecessary privileges (Swing, 7020198) - (CVE-2011-0786): unspecified vulnerabilities fixed in 6u26 (Deployment, JRE) - (CVE-2011-0788): unspecified vulnerabilities fixed in 6u26 (Deployment, JRE) - (CVE-2011-0866): unspecified vulnerabilities fixed in 6u26 (Deployment, JRE) - (CVE-2011-0868): incorrect numeric type conversion in TransformHelper (2D, 7016495) - (CVE-2011-0872): non-blocking sockets incorrectly selected for reading (NIO, 6213702) - (CVE-2011-0867): NetworkInterface information leak (Networking, 7013969) - (CVE-2011-0869): unprivileged proxy settings change via SOAPConnection (SAAJ, 7013971) - (CVE-2011-0865): Deserialization allows creation of mutable SignedObject (Deserialization, 6618658) . [ Torsten Werner ] * Upload to oldstable. Checksums-Sha1: 10b67e83666516ae0a8fd4774a43ebcc557e75b8 30153888 sun-java6-bin_6-26-0lenny1_i386.deb 03bbde99653e1fcdbb944a7b5ad68b5c7c43e9ca 1958 sun-java6-plugin_6-26-0lenny1_i386.deb afdc6da73f5a79c403ce8317659c652b58386125 20228024 sun-java6-jdk_6-26-0lenny1_i386.deb b39da7c30b9cf03cdc72ed55a09d2979b1d2cbed 12128304 sun-java6-demo_6-26-0lenny1_i386.deb Checksums-Sha256: 5220942b528189dc4845569bfc76c80d6b91f5738091a20c7b3f05e83cc52fe1 30153888 sun-java6-bin_6-26-0lenny1_i386.deb b9dae5b5e99ab2f0dd43a013f2c13db4ae32c883633b5aea3448ad9baf7a9469 1958 sun-java6-plugin_6-26-0lenny1_i386.deb e85a178981c4272402d3f7ef2c5cf2fdf0f9e24834ca1f0ba512e8502a75391c 20228024 sun-java6-jdk_6-26-0lenny1_i386.deb 9d2da0fb909184a77f267797b3405c9ddacdfbf0b3980a0c38d9927aba7d1ba4 12128304 sun-java6-demo_6-26-0lenny1_i386.deb Files: eaee0e9b7bec4a3e37da3eddc6c6c2e4 30153888 non-free/libs optional sun-java6-bin_6-26-0lenny1_i386.deb 65e3ebf5ff9dfcfb44411058052f8603 1958 non-free/web optional sun-java6-plugin_6-26-0lenny1_i386.deb 427332d27f149ef775aafdc9b40cf498 20228024 non-free/devel optional sun-java6-jdk_6-26-0lenny1_i386.deb 8ec63b55108458755aa0bcbf5b02ef3f 12128304 non-free/devel optional sun-java6-demo_6-26-0lenny1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQIcBAEBCAAGBQJN9iUGAAoJEHY75GREw+rH4b8QALAsNAN0AxPltuUBonFfdVqv srY034ug03WZqv2zT06NG8EgVCSDqlrLo3NrR4sEHyyjOKodRAzcsSnoOQkhRI7j 0yxBjTi0JQ7aJ/PQAMEyrqjhIdpBvTc6VPxbFyKUhhzqtsT5V6672T4vIzuw4DaA 6BHByKMtxdqaEom883yqE4YhjJTFXKL8l/oofoqu6NQwiDliQo6PtG9uSykf9F6i 4NTpdxhVvHjueoaHH+LUyYKHPOsaQu7CSThEubNCH51wQ22t8sX0fFhF8o9ApARs g1pVxKRHAsTgJs/6DhDuOmGchP6xMAABG8FwoA0wNjbaAejd4dBbEmx7HF6fHsRX x5xOf+Wdx+WxjXx3c1Na/rGd3tmm4fbwo3U/19VaV38EiWKtvx19dKNjKYhs/Zio zcGA81Gq4bE/ErhGYL46bJLJ4AinNAg6fWoQbNIgtEo3liz9XOKvQ9JhI6InSxj1 Zl3QnVp1iqP2f4ZiqXigA1vBpkJgF0Z278YxBXzqtZG4l2RuORetRQ/qvJpCd4iE 9TIfrRs80NY76mHMdZfYwlE0jOTzYG+SEN8C/ZIkmGR4kGlFMwqecwj37WR33dQw jH0M0Dk3jfsG74z+m/aev0lMkjl45kjQrstFW7Gbwu/GViQmpQBAzfhugsPYWaJD Mwo8w3rerwj2x6eQMKua =sfZF -----END PGP SIGNATURE-----