[Branch ~openjdk/openjdk/openjdk7] Rev 589: openjdk-7 (7u79-2.5.6-1) unstable; urgency=medium
noreply at launchpad.net
noreply at launchpad.net
Thu Aug 13 12:10:37 UTC 2015
------------------------------------------------------------
revno: 589
committer: Matthias Klose <doko at debian.org>
branch nick: openjdk7
timestamp: Thu 2015-08-13 14:09:44 +0200
message:
openjdk-7 (7u79-2.5.6-1) unstable; urgency=medium
* IcedTea7 2.5.6 release (based on OpenJDK 7u79).
* Security fixes
- S8043202, CVE-2015-2808: Prohibit RC4 cipher suites.
- S8067694, CVE-2015-2625: Improved certification checking.
- S8071715, CVE-2015-4760: Tune font layout engine.
- S8071731: Better scaling for C1.
- S8072490: Better font morphing redux.
- S8072887: Better font handling improvements.
- S8073334: Improved font substitutions.
- S8073773: Presume path preparedness.
- S8073894: Getting to the root of certificate chains.
- S8074330: Set font anchors more solidly.
- S8074335: Substitute for substitution formats.
- S8074865, CVE-2015-2601: General crypto resilience changes.
- S8074871: Adjust device table handling.
- S8075374, CVE-2015-4748: Responding to OCSP responses.
- S8075378, CVE-2015-4749: JNDI DnsClient Exception Handling.
- S8075738: Better multi-JVM sharing.
- S8075833, CVE-2015-2613: Straighter Elliptic Curves.
- S8075838: Method for typing MethodTypes.
- S8075853, CVE-2015-2621: Proxy for MBean proxies.
- S8076328, CVE-2015-4000: Enforce key exchange constraints.
- S8076376, CVE-2015-2628: Enhance IIOP operations.
- S8076397, CVE-2015-4731: Better MBean connections.
- S8076401, CVE-2015-2590: Serialize OIS data.
- S8076405, CVE-2015-4732: Improve serial serialization.
- S8076409, CVE-2015-4733: Reinforce RMI framework.
- S8077520, CVE-2015-2632: Morph tables into improved form.
- PR2487, CVE-2015-4000: Make jdk8 mode the default for
jdk.tls.ephemeralDHKeySize.
* Update the kfreebsd hotspot support patch (Steven Chamberlain).
Closes: #788982.
* openjdk-7-jre: Recommend the real libgconf2-4 and libgnome2-0 packages.
Closes: #786594.
-- Matthias Klose <doko at ubuntu.com> Thu, 23 Jul 2015 17:19:35 +0200
modified:
changelog
generate-debian-orig.sh
patches/it-aarch64-zero-default.diff
patches/it-debian-build-flags.diff
patches/it-jamvm-2.0.diff
patches/it-nss-softokn-config.diff
patches/it-patch-updates.diff
patches/it-set-compiler.diff
patches/it-use-quilt.diff
patches/jdk-freetypeScaler-crash.diff
--
lp:~openjdk/openjdk/openjdk7
https://code.launchpad.net/~openjdk/openjdk/openjdk7
Your team Debian Java Maintainers is subscribed to branch lp:~openjdk/openjdk/openjdk7.
To unsubscribe from this branch go to https://code.launchpad.net/~openjdk/openjdk/openjdk7/+edit-subscription
-------------- next part --------------
A non-text attachment was scrubbed...
Name: revision-diff.txt
Type: text/x-diff
Size: 11920 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-java-maintainers/attachments/20150813/33569520/attachment.diff>
More information about the pkg-java-maintainers
mailing list