ELSA-2013-0602

ELSA-2013-0602 - java-1.7.0-openjdk security update

Type:SECURITY
Severity:CRITICAL
Release Date:2013-03-06

Description


[1.7.0.9-2.3.8.0.0.1.el6_4]
- Update DISTRO_NAME in specfile

[1.7.0.9-2.3.8.0el6]
- Revert to rhel 6.3 version of spec file
- Revert to icedtea7 2.3.8 forest
- Resolves: rhbz#917183

[1.7.0.11-2.4.0.pre5.el6]
- Update to latest snapshot of icedtea7 2.4 forest
- Resolves: rhbz#917183

[1.7.0.9-2.4.0.pre4.3.el6]
- Updated to icedtea 2.4.0.pre4,
- Rewritten (again) patch3 java-1.7.0-openjdk-java-access-bridge-security.patch
- Resolves: rhbz#911530

[1.7.0.9-2.4.0.pre3.3.el6]
- Updated to icedtea 2.4.0.pre3, updated!
- Rewritten patch3 java-1.7.0-openjdk-java-access-bridge-security.patch
- Resolves: rhbz#911530

[1.7.0.9-2.4.0.pre2.3.el6]
- Removed testing
- mauve was outdated and
- jtreg was icedtea relict
- Updated to icedtea 2.4.0.pre2, updated?
- Added java -Xshare:dump to post (see 513605) fo jitarchs
- Resolves: rhbz#911530

[1.7.0.11-2.4.0.2.el6]
- Unapplied but kept (for 2.3revert) patch110, java-1.7.0-openjdk-nss-icedtea-e9c857dcb964.patch
- Added and applied patch113: java-1.7.0-openjdk-aes-update_reset.patch
- Added and applied patch114: java-1.7.0-openjdk-nss-tck.patch
- Added and applied patch115: java-1.7.0-openjdk-nss-split_results.patch
- NSS enabled by default - enable_nss set to 1
- rewritten patch109 - java-1.7.0-openjdk-nss-config-1.patch
- rewritten patch111 - java-1.7.0-openjdk-nss-config-2.patch
- Resolves: rhbz#831734

[1.7.0.11-2.4.0.1.el6]
- Rewritten patch105: java-1.7.0-openjdk-disable-system-lcms.patch
- Added jxmd and idlj to alternatives
- make executed with DISABLE_INTREE_EC=true and UNLIMITED_CRYPTO=true
- Unapplied patch302 and deleted systemtap.patch
- buildver increased to 11
- icedtea_version set to 2.4.0
- Added and applied patch112 java-1.7.openjdk-doNotUseDisabledEcc.patch
- removed tmp-patches source tarball
- Added /lib/security/US_export_policy.jar and lib/security/local_policy.jar
- Disabled nss - enable_nss set to 0
- Resolves: rhbz#895034


Related CVEs


CVE-2013-0809
CVE-2013-1493

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (i386) java-1.7.0-openjdk-1.7.0.9-2.3.8.0.0.1.el6_4.src.rpm6370ce8fe3bdec77d7e13e30ff970205ELSA-2020-1508
java-1.7.0-openjdk-1.7.0.9-2.3.8.0.0.1.el6_4.i686.rpmdc6fbad03c73c9fa65a8c19a4d0b5383ELSA-2020-1508
java-1.7.0-openjdk-demo-1.7.0.9-2.3.8.0.0.1.el6_4.i686.rpm361e5523078c168ea8129fadc51b8cbbELSA-2020-1508
java-1.7.0-openjdk-devel-1.7.0.9-2.3.8.0.0.1.el6_4.i686.rpm88a7f26ed6477008b701777449a83859ELSA-2020-1508
java-1.7.0-openjdk-javadoc-1.7.0.9-2.3.8.0.0.1.el6_4.noarch.rpmeff577b7490c84171aff62a9e0c456aeELSA-2020-1508
java-1.7.0-openjdk-src-1.7.0.9-2.3.8.0.0.1.el6_4.i686.rpm34355dce520cbc589d147d59468c5670ELSA-2020-1508
Oracle Linux 6 (x86_64) java-1.7.0-openjdk-1.7.0.9-2.3.8.0.0.1.el6_4.src.rpm6370ce8fe3bdec77d7e13e30ff970205ELSA-2020-1508
java-1.7.0-openjdk-1.7.0.9-2.3.8.0.0.1.el6_4.x86_64.rpma9d6ab61ad52ed56843448a02c9b98d8ELSA-2020-1508
java-1.7.0-openjdk-demo-1.7.0.9-2.3.8.0.0.1.el6_4.x86_64.rpm991ce465e15d0dc00970dc57dcafcd93ELSA-2020-1508
java-1.7.0-openjdk-devel-1.7.0.9-2.3.8.0.0.1.el6_4.x86_64.rpm5ca1d3c2e622ed6b7c42904c4789edf4ELSA-2020-1508
java-1.7.0-openjdk-javadoc-1.7.0.9-2.3.8.0.0.1.el6_4.noarch.rpmeff577b7490c84171aff62a9e0c456aeELSA-2020-1508
java-1.7.0-openjdk-src-1.7.0.9-2.3.8.0.0.1.el6_4.x86_64.rpmb0de1a2f3ebdf9afa28ce3b1fdf55f8cELSA-2020-1508



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete