Bug#512532: CVE-2008-5659: The gnu.java.security.util.PRNG class in GNU [...]

marcos.marado at sonae.com marcos.marado at sonae.com
Wed Feb 4 17:11:09 UTC 2009


Just a head up,

classpath's CVS already has a fix for this:

gnu/java/security/jce/prng/SecureRandomAdapter.java
gnu/javax/crypto/jce/prng/ARCFourRandomSpi.java 
gnu/javax/crypto/jce/prng/CSPRNGSpi.java
gnu/javax/crypto/jce/prng/FortunaImpl.java 
gnu/javax/crypto/jce/prng/ICMRandomSpi.java
gnu/javax/crypto/jce/prng/UMacRandomSpi.java
gnu/javax/crypto/prng/ICMGenerator.java

Best regards,
-- 
Marcos Marado





More information about the pkg-java-maintainers mailing list