-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 02 Oct 2013 17:11:22 +0200 Source: icedtea-web Binary: icedtea-netx icedtea-plugin icedtea6-plugin icedtea-netx-common icedtea-6-plugin icedtea-7-plugin Architecture: source amd64 all Version: 1.4-3~deb7u2 Distribution: wheezy-security Urgency: high Maintainer: OpenJDK Team <openjdk@lists.launchpad.net> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Description: icedtea-6-plugin - web browser plugin based on OpenJDK and IcedTea to execute Java a icedtea-7-plugin - web browser plugin based on OpenJDK and IcedTea to execute Java a icedtea-netx - NetX - implementation of the Java Network Launching Protocol (JNL icedtea-netx-common - NetX - implementation of the Java Network Launching Protocol (JNL icedtea-plugin - web browser plugin to execute Java applets (dependency package) icedtea6-plugin - web browser plugin to execute Java applets (dependency package) Closes: 723118 Changes: icedtea-web (1.4-3~deb7u2) wheezy-security; urgency=high . * Non-maintainer upload by the Security Team. * Add CVE-2013-4349.diff patch. CVE-2013-4349: Fix IcedTeaScriptableJavaObject::invoke off-by-one heap-based buffer overflow after triggering event attached to applets. (Closes: #723118) Checksums-Sha1: 5d4a076bca7b0458c2485bf42fc17af43722cb45 2464 icedtea-web_1.4-3~deb7u2.dsc 4e90bcce332fb0b68f4aeae21b0d269a2b16254e 32301 icedtea-web_1.4-3~deb7u2.debian.tar.gz 2d34a08b007172f3cf19cba484f46560a0f54aa9 20700 icedtea-netx_1.4-3~deb7u2_amd64.deb e428f27067133eba42cb1455fda54f42c0d584d1 90106 icedtea-6-plugin_1.4-3~deb7u2_amd64.deb 7d4c177435f09bd128f41b1d585be9ed909a5377 90034 icedtea-7-plugin_1.4-3~deb7u2_amd64.deb 936b8a7a2b469fed8aa8f793faa2846f72f7bbd7 855260 icedtea-netx-common_1.4-3~deb7u2_all.deb 6d195dc710cc0d1d7ba5648bb7953fd9e9a5ad5b 8716 icedtea-plugin_1.4-3~deb7u2_all.deb 5f3358cf546c7b6e825f0b2948573f705cf405d7 890 icedtea6-plugin_6b21.4-3~deb7u2_all.deb Checksums-Sha256: b0d92f0622d5c6f12d009ae74a4741e5ac834928ff4ae19308ed8982d6e25623 2464 icedtea-web_1.4-3~deb7u2.dsc 607cf1bafcb46df5b457ea535dea89a423b5d37933e0d57db4e6f23f569990af 32301 icedtea-web_1.4-3~deb7u2.debian.tar.gz 8c23ff07bd9e7612755119aca7eaded916da2756e2396b2b3a14c5ae318b6a73 20700 icedtea-netx_1.4-3~deb7u2_amd64.deb 416a137ee5947c4d4286c9617378f3b0e700d8a39ed1524c2b5107b52b9cdfc6 90106 icedtea-6-plugin_1.4-3~deb7u2_amd64.deb dcb49f2cafa1e8f20bd0b8c223b2756ebf0b36c836f3968ac257df8594da6200 90034 icedtea-7-plugin_1.4-3~deb7u2_amd64.deb c9207f8347d9ba230773257c663a86a051924762172e2ce611b915552550bffd 855260 icedtea-netx-common_1.4-3~deb7u2_all.deb c6df9bbc852b7b124de00c445f124f5608965f19d728a6b6c4a5ed5b959b249a 8716 icedtea-plugin_1.4-3~deb7u2_all.deb 5ed34d0a1928d9ce9bb03f5b76748a7e2c0c70b55e95aafdb2a178372f5120c2 890 icedtea6-plugin_6b21.4-3~deb7u2_all.deb Files: 72986e2e0c63860ef3ccb7b9a481c0b0 2464 java extra icedtea-web_1.4-3~deb7u2.dsc aa710e5a7ec033365e6db1a06fee7874 32301 java extra icedtea-web_1.4-3~deb7u2.debian.tar.gz 46c736422459cdd36f3ef95df098ebf6 20700 java extra icedtea-netx_1.4-3~deb7u2_amd64.deb c38de5fbd8e31ece6f5c60f2de383a6c 90106 web extra icedtea-6-plugin_1.4-3~deb7u2_amd64.deb e5e49e71b1ca0ec61d78ce0547a4d951 90034 web extra icedtea-7-plugin_1.4-3~deb7u2_amd64.deb adef257b2a6ac3c1b85467fcd55f9279 855260 java extra icedtea-netx-common_1.4-3~deb7u2_all.deb 3275fa51ee3d3a354215834e765c5947 8716 web extra icedtea-plugin_1.4-3~deb7u2_all.deb 3d73669da656fef645c5740e04b08e50 890 web extra icedtea6-plugin_6b21.4-3~deb7u2_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.14 (GNU/Linux) iQIcBAEBCgAGBQJSTDoeAAoJEHidbwV/2GP+VLsQAJQvPqc5BCt84pzvHE3XsBLn ZfjUqBVr9m8VCmOKyVGzJ1CM4AwQZoCeAKVPApEjLwHiRLPcOjBNwKJfAC6wUhi9 tapJRVtMPu++XC73B7wtyBsOrdnZnhxgghdnwb3UZCYTpdPIoAdPIvNZYdBHGnMX aPGBe5YV6gIJhOoYGwE1r6Rmays1BPqUmZKCDvtzqsidKVHv2QFKodxAJ7Wfm8Yg vYIncFfHxrQ2vcYU+lmatH1q0A+H1eqqGlk7woDyevfrxkEwrzu17reZndUlwBiG lCgC88HBoADYo3rzkVZB1R1yianeLyMdWTwkiUjdS/Hs6qxFiyHXGxgQxwoqPhvz QbqRYdhDzdcbDirbx0294qa9TJyFKy1tqDX62L79osXtsPEiWsj1uVcBr5a5Y/GB y+09gmbhU+VQ9/s+u6pP8yk7lL/fHcEoBjIQw3lQr8OiAn12Xtg5hs88NcOUmFU/ 2BUyg4IoQYPPY3VG/ynB2f2otn6cS6ABWoGDK8I9EyhdVDV2i+MbCUZ4h1xqAlqn LnfPPrfYV1VdZuvMiuDUUJOgEjWIjbngcj7CG47c/aogeOkSSN6lHM6Q05XJ8oYU OkXxRytWoEglzDsdxtAVLKwy91wkyxGGOcVbBbhp0yv1JJhA83KD1A4Ugj/GxZ8R 2E7MePVaQpGeCt3+3o3H =uepb -----END PGP SIGNATURE-----