[Branch ~openjdk/openjdk/openjdk7] Rev 589: openjdk-7 (7u79-2.5.6-1) unstable; urgency=medium

noreply at launchpad.net noreply at launchpad.net
Thu Aug 13 12:10:37 UTC 2015


------------------------------------------------------------
revno: 589
committer: Matthias Klose <doko at debian.org>
branch nick: openjdk7
timestamp: Thu 2015-08-13 14:09:44 +0200
message:
  openjdk-7 (7u79-2.5.6-1) unstable; urgency=medium
  
    * IcedTea7 2.5.6 release (based on OpenJDK 7u79).
    * Security fixes
      - S8043202, CVE-2015-2808: Prohibit RC4 cipher suites.
      - S8067694, CVE-2015-2625: Improved certification checking.
      - S8071715, CVE-2015-4760: Tune font layout engine.
      - S8071731: Better scaling for C1.
      - S8072490: Better font morphing redux.
      - S8072887: Better font handling improvements.
      - S8073334: Improved font substitutions.
      - S8073773: Presume path preparedness.
      - S8073894: Getting to the root of certificate chains.
      - S8074330: Set font anchors more solidly.
      - S8074335: Substitute for substitution formats.
      - S8074865, CVE-2015-2601: General crypto resilience changes.
      - S8074871: Adjust device table handling.
      - S8075374, CVE-2015-4748: Responding to OCSP responses.
      - S8075378, CVE-2015-4749: JNDI DnsClient Exception Handling.
      - S8075738: Better multi-JVM sharing.
      - S8075833, CVE-2015-2613: Straighter Elliptic Curves.
      - S8075838: Method for typing MethodTypes.
      - S8075853, CVE-2015-2621: Proxy for MBean proxies.
      - S8076328, CVE-2015-4000: Enforce key exchange constraints.
      - S8076376, CVE-2015-2628: Enhance IIOP operations.
      - S8076397, CVE-2015-4731: Better MBean connections.
      - S8076401, CVE-2015-2590: Serialize OIS data.
      - S8076405, CVE-2015-4732: Improve serial serialization.
      - S8076409, CVE-2015-4733: Reinforce RMI framework.
      - S8077520, CVE-2015-2632: Morph tables into improved form.
      - PR2487, CVE-2015-4000: Make jdk8 mode the default for
        jdk.tls.ephemeralDHKeySize.
    * Update the kfreebsd hotspot support patch (Steven Chamberlain).
      Closes: #788982.
    * openjdk-7-jre: Recommend the real libgconf2-4 and libgnome2-0 packages.
      Closes: #786594.
  
   -- Matthias Klose <doko at ubuntu.com>  Thu, 23 Jul 2015 17:19:35 +0200
modified:
  changelog
  generate-debian-orig.sh
  patches/it-aarch64-zero-default.diff
  patches/it-debian-build-flags.diff
  patches/it-jamvm-2.0.diff
  patches/it-nss-softokn-config.diff
  patches/it-patch-updates.diff
  patches/it-set-compiler.diff
  patches/it-use-quilt.diff
  patches/jdk-freetypeScaler-crash.diff


--
lp:~openjdk/openjdk/openjdk7
https://code.launchpad.net/~openjdk/openjdk/openjdk7

Your team Debian Java Maintainers is subscribed to branch lp:~openjdk/openjdk/openjdk7.
To unsubscribe from this branch go to https://code.launchpad.net/~openjdk/openjdk/openjdk7/+edit-subscription
-------------- next part --------------
A non-text attachment was scrubbed...
Name: revision-diff.txt
Type: text/x-diff
Size: 11920 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-java-maintainers/attachments/20150813/33569520/attachment.diff>


More information about the pkg-java-maintainers mailing list