-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 12 Aug 2019 19:58:42 +0200 Source: openjdk-7 Binary: openjdk-7-jdk openjdk-7-jre-headless openjdk-7-jre openjdk-7-jre-lib openjdk-7-demo openjdk-7-source openjdk-7-doc openjdk-7-dbg icedtea-7-jre-jamvm openjdk-7-jre-zero Architecture: source amd64 all Version: 7u231-2.6.19-1~deb8u1 Distribution: jessie-security Urgency: high Maintainer: OpenJDK Team <openjdk@lists.launchpad.net> Changed-By: Markus Koschany <apo@debian.org> Description: icedtea-7-jre-jamvm - Alternative JVM for OpenJDK, using JamVM openjdk-7-dbg - Java runtime based on OpenJDK (debugging symbols) openjdk-7-demo - Java runtime based on OpenJDK (demos and examples) openjdk-7-doc - OpenJDK Development Kit (JDK) documentation openjdk-7-jdk - OpenJDK Development Kit (JDK) openjdk-7-jre - OpenJDK Java runtime, using ${vm:Name} openjdk-7-jre-headless - OpenJDK Java runtime, using ${vm:Name} (headless) openjdk-7-jre-lib - OpenJDK Java runtime (architecture independent libraries) openjdk-7-jre-zero - Alternative JVM for OpenJDK, using Zero/Shark openjdk-7-source - OpenJDK Development Kit (JDK) source files Changes: openjdk-7 (7u231-2.6.19-1~deb8u1) jessie-security; urgency=high . [ Markus Koschany ] * IcedTea release 2.6.19 (based on 7u231). * Security fixes: - S8191073: JpegImageReader throws IndexOutOfBoundsException when trying to read image data from tables-only image - S8208698, CVE-2019-2745: Improved ECC Implementation - S8212328, CVE-2019-2745: Exceptional throw cases - S8213431, CVE-2019-2766: Improve file protocol handling - S8213432, CVE-2019-2769: Better copies of CopiesList - S8216381, CVE-2019-2786: More limited privilege usage - S8217563: Improve realm maintenance - S8218873: Improve JSSE endpoint checking - S8218876, CVE-2019-2745: Improve PNG support options - S8219018: Adjust positions of glyphs - S8219020: Table alternate substitutions - S8219775: Certificate validation improvements - S8220192: Better outlook for SecureRandom - S8220517: Enhanced GIF support - S8221518, CVE-2019-2816: Normalize normalization - S8223511, CVE-2019-2842: Extended AES support Checksums-Sha1: 6f0ab923259e4efc1d3ec7825c6e07c4061db43c 4828 openjdk-7_7u231-2.6.19-1~deb8u1.dsc e1a84b0fae20994dd93c426a9a1b79bde1969da4 54734898 openjdk-7_7u231-2.6.19.orig.tar.gz f47952456129d01858be8085338a600629aa0414 174360 openjdk-7_7u231-2.6.19-1~deb8u1.debian.tar.xz 59efb1b31a918b993f3ff74fcbc317fad170b69d 16332460 openjdk-7-jdk_7u231-2.6.19-1~deb8u1_amd64.deb 5d02b1284ca3c8994c0f99f64ec1457c97a44449 40085362 openjdk-7-jre-headless_7u231-2.6.19-1~deb8u1_amd64.deb 7d2ac5796ae04c345993aba1d4a28ad07d7453e6 176518 openjdk-7-jre_7u231-2.6.19-1~deb8u1_amd64.deb e066963c4408019597d102c62f05290c1ae281cd 1886488 openjdk-7-demo_7u231-2.6.19-1~deb8u1_amd64.deb 8fdb483825880f74ebd247a083f1b9ec22f71580 178278126 openjdk-7-dbg_7u231-2.6.19-1~deb8u1_amd64.deb 48ca669dbf73c80dc50217c48f0886285834a47b 724270 icedtea-7-jre-jamvm_7u231-2.6.19-1~deb8u1_amd64.deb ac3203784c07090d69a02e5bbb9bebdcb4155f3e 1739614 openjdk-7-jre-zero_7u231-2.6.19-1~deb8u1_amd64.deb e0442923e1bf714ad4be46ffb90876d56bbe525a 315050 openjdk-7-jre-lib_7u231-2.6.19-1~deb8u1_all.deb a7f0580f02e0f9ab17ff79c7b26a647e515242bd 40358192 openjdk-7-source_7u231-2.6.19-1~deb8u1_all.deb a4ea0439e1b93e941751819293f42592774b239b 11264410 openjdk-7-doc_7u231-2.6.19-1~deb8u1_all.deb Checksums-Sha256: b529e346c7846b36a68c9b134c5c3d0064c02d8eab0b7e5f923c4206212d6d3e 4828 openjdk-7_7u231-2.6.19-1~deb8u1.dsc 833881cbd26541d82bb3e3da11eba010fe7cd365a0112782236ac8e1ea61b284 54734898 openjdk-7_7u231-2.6.19.orig.tar.gz bc54df11f377efeb107e8e996b9f6abde433e79c5ece4bd3e83f1bb3270eb8fe 174360 openjdk-7_7u231-2.6.19-1~deb8u1.debian.tar.xz 8b97db19c60eab556eaf71e2b50a766346f2b623f84c7f6dbb22cc6964733434 16332460 openjdk-7-jdk_7u231-2.6.19-1~deb8u1_amd64.deb e6ce972877366d0dfc3496eb1f069b7679177ba37341324016e2b315036609d6 40085362 openjdk-7-jre-headless_7u231-2.6.19-1~deb8u1_amd64.deb ddbed2aa19edd4802cd3fbcd48ebea2e16f2cc462cc5a8dc326f5f4fba21a472 176518 openjdk-7-jre_7u231-2.6.19-1~deb8u1_amd64.deb b979126a1c4cfca4112189ad17e8ba337ab2a7f8f8a992fe9ba2b97e2c37116c 1886488 openjdk-7-demo_7u231-2.6.19-1~deb8u1_amd64.deb 01f2fe34ccaccf2c22c609567e0f05736598e90228ae72c1ef39c693cda68107 178278126 openjdk-7-dbg_7u231-2.6.19-1~deb8u1_amd64.deb fee30c4fd4891c9007d2fae6d37272f23c25e37a10b5363e7a044e48b2434171 724270 icedtea-7-jre-jamvm_7u231-2.6.19-1~deb8u1_amd64.deb bb052d02fbd74b4d2b911ca06076b8766ed281a7302c77e3100c40d5f0fab0bf 1739614 openjdk-7-jre-zero_7u231-2.6.19-1~deb8u1_amd64.deb fddab8c16b1723479dc63679ad9a53409ecaa97ce65c9f59283e651e93994be1 315050 openjdk-7-jre-lib_7u231-2.6.19-1~deb8u1_all.deb 0aa5572b7303b51d943881478d534878b97d0d25411ac13a7cc0e5af8bf9390d 40358192 openjdk-7-source_7u231-2.6.19-1~deb8u1_all.deb 60b034d030b7e7e218844507dfdb28ac602304c4ccba7b77f57589a2ee70c1a4 11264410 openjdk-7-doc_7u231-2.6.19-1~deb8u1_all.deb Files: 7ddb8d5b4e2728cd94af7fc16a2bb16e 4828 java optional openjdk-7_7u231-2.6.19-1~deb8u1.dsc 6e015fa5966cc0a172e1ea379fe8ddb7 54734898 java optional openjdk-7_7u231-2.6.19.orig.tar.gz 4d35d35736be9cfe5ac41fc4c964ca1b 174360 java optional openjdk-7_7u231-2.6.19-1~deb8u1.debian.tar.xz edc3e893fd32d485d41ef53c7077f040 16332460 java optional openjdk-7-jdk_7u231-2.6.19-1~deb8u1_amd64.deb c6314a99ec3edcca8d465149087998ee 40085362 java optional openjdk-7-jre-headless_7u231-2.6.19-1~deb8u1_amd64.deb 62a123c3cff49c8393913906ad6988a3 176518 java optional openjdk-7-jre_7u231-2.6.19-1~deb8u1_amd64.deb 1828f9f11fb4b29d1bd68141738c8ba4 1886488 java optional openjdk-7-demo_7u231-2.6.19-1~deb8u1_amd64.deb c75777af0835b7159f72ab9b01adfdf1 178278126 debug optional openjdk-7-dbg_7u231-2.6.19-1~deb8u1_amd64.deb 3dac8e546e10e5ac685ad4e5b586d58f 724270 java optional icedtea-7-jre-jamvm_7u231-2.6.19-1~deb8u1_amd64.deb 540b028e480db46d4cbf8464db3a4e82 1739614 java optional openjdk-7-jre-zero_7u231-2.6.19-1~deb8u1_amd64.deb 3f8da3d061bb6bcb3508fb2579318097 315050 oldlibs optional openjdk-7-jre-lib_7u231-2.6.19-1~deb8u1_all.deb 66bc13c2af91bd311dda5a0d8dba99e2 40358192 java optional openjdk-7-source_7u231-2.6.19-1~deb8u1_all.deb 3c51285a4c8d6f71d8a20708fa64518e 11264410 doc optional openjdk-7-doc_7u231-2.6.19-1~deb8u1_all.deb -----BEGIN PGP SIGNATURE----- iQKjBAEBCgCNFiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAl1Vs19fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQPHGFwb0BkZWJp YW4ub3JnAAoJENmtFLlRO1HkuUMP/3yXUW8axqlhhu/t2G+dzBAvf+uZ0dIt53Xg GGmRjiZ04yMqR7KHqS+umQExnyRAlxYEHLZ3CVKvCDauNyq1p0wFKIer8H4aygle 0IyiXxCz5dkeR0NEg565n1uqiMtcJ+pk0lVaZ5h3WXmOe6zSO2HCiO2z2iisgSsL egygeXsyBNiSUKttZ25LxHJa4qp4Qr/YTekiX14WCFhHacWcyArm+ehzov5o2kYf dW0gdAKoL5LRHAt/3rX9ROFXCyjqDgzkdxKLfoREahs0nnMRAupVPDl56WvP0MUb n7NQNmC9SkMjtzScXTw9/qZ3WGAofrCothLdJUj7NZqgIBVGv1S+qoVw+RgxDwGK 9Fp0v/JSvkfYpv9V2VDBTFCrIm8uhCPKdP13EADQZQwUJNXkx8o7396oYTcehqmm K/vkvmy2xeQQHEPoy/L0SWltWiZIxnZYF/zXBHhq7IfcNoLhudbHCke06+ESLmSB kyvnXlx/HHgy3YZm8ouHv7vCS6kguWcHDasJAJO8P+zyjOvWmtd28c5/vCRZrFWP 2ba/YKgfUH9qQXWm2bRB2uGpW9nqQdOd4iYkDHWhljrGsOVA6MbQfVDDP+5EhHLR uj/9v6QSDnh3+0faKH5DXQ1zCF91niRuVpsVbVKyihTXAobdgpaneCLjNDAfQKyd ylPT7Mm0 =WDwv -----END PGP SIGNATURE-----