<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "http://bugs.gentoo.org/bugzilla.dtd">

<bugzilla version="2.22.7"
          urlbase="http://bugs.gentoo.org/"
          maintainer="bugzilla@gentoo.org"
>

    <bug>
          <bug_id>140495</bug_id>
          
          <creation_ts>2006-07-15 07:29 0000</creation_ts>
          <short_desc>dev-java/{blackdown-jdk,sun-jdk} - security cleanup needed</short_desc>
          <delta_ts>2006-09-02 18:33:23 0000</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>Gentoo Linux</product>
          <component>Ebuilds</component>
          <version>2006.0</version>
          <rep_platform>All</rep_platform>
          <op_sys>Linux</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          
          <priority>P2</priority>
          <bug_severity>normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          
          <everconfirmed>1</everconfirmed>
          <reporter>jakub@gentoo.org</reporter>
          <assigned_to>java@gentoo.org</assigned_to>
          

      

      
          <long_desc isprivate="0">
            <who>jakub@gentoo.org</who>
            <bug_when>2006-07-15 07:29:41 0000</bug_when>
            <thetext>dev-java/blackdown-jdk-1.3.1-r8: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.02 ), affects (&apos;ppc&apos;, &apos;sparc&apos;, &apos;x86&apos;)
dev-java/blackdown-jdk-1.3.1-r8: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.03 ), affects (&apos;ppc&apos;, &apos;sparc&apos;, &apos;x86&apos;)
dev-java/blackdown-jdk-1.3.1-r8: vulnerable via glsa(200411-38) ( ( ver &lt; 1.4.2.01 &amp;&amp; keywords contains [x86, amd64] ) ), affects (&apos;x86&apos;,)
dev-java/blackdown-jdk-1.3.1-r10: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.02 ), affects (&apos;ppc&apos;,)
dev-java/blackdown-jdk-1.3.1-r10: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.03 ), affects (&apos;ppc&apos;,)
dev-java/blackdown-jdk-1.3.1-r23: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.02 ), affects (&apos;ppc&apos;, &apos;sparc&apos;, &apos;x86&apos;)
dev-java/blackdown-jdk-1.3.1-r23: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.03 ), affects (&apos;ppc&apos;, &apos;sparc&apos;, &apos;x86&apos;)
dev-java/blackdown-jdk-1.4.1-r1: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.02 ), affects (&apos;amd64&apos;, &apos;sparc&apos;, &apos;x86&apos;)
dev-java/blackdown-jdk-1.4.1-r1: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.03 ), affects (&apos;amd64&apos;, &apos;sparc&apos;, &apos;x86&apos;)
dev-java/blackdown-jdk-1.4.1-r1: vulnerable via glsa(200411-38) ( ( ver &lt; 1.4.2.01 &amp;&amp; keywords contains [x86, amd64] ) ), affects (&apos;amd64&apos;, &apos;x86&apos;)
dev-java/blackdown-jdk-1.4.1-r12: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.02 ), affects (&apos;amd64&apos;, &apos;sparc&apos;, &apos;x86&apos;)
dev-java/blackdown-jdk-1.4.1-r12: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.03 ), affects (&apos;amd64&apos;, &apos;sparc&apos;, &apos;x86&apos;)
dev-java/blackdown-jre-1.3.1-r9: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.02 ), affects (&apos;ppc&apos;,)
dev-java/blackdown-jre-1.3.1-r9: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.03 ), affects (&apos;ppc&apos;,)
dev-java/blackdown-jre-1.3.1-r20: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.02 ), affects (&apos;ppc&apos;,)
dev-java/blackdown-jre-1.3.1-r20: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.03 ), affects (&apos;ppc&apos;,)
dev-java/blackdown-jre-1.4.1-r1: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.02 ), affects (&apos;amd64&apos;, &apos;sparc&apos;, &apos;x86&apos;)
dev-java/blackdown-jre-1.4.1-r1: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.03 ), affects (&apos;amd64&apos;, &apos;sparc&apos;, &apos;x86&apos;)
dev-java/blackdown-jre-1.4.1-r1: vulnerable via glsa(200411-38) ( ( ver &lt; 1.4.2.01 &amp;&amp; keywords contains [x86, amd64] ) ), affects (&apos;amd64&apos;, &apos;x86&apos;)
dev-java/blackdown-jre-1.4.1-r12: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.02 ), affects (&apos;amd64&apos;, &apos;sparc&apos;, &apos;x86&apos;)
dev-java/blackdown-jre-1.4.1-r12: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.03 ), affects (&apos;amd64&apos;, &apos;sparc&apos;, &apos;x86&apos;)

dev-java/sun-jdk-1.2.2.017: vulnerable via glsa(200602-07) ( ver &lt; 1.4.2.10 ), affects (&apos;x86&apos;,)
dev-java/sun-jdk-1.2.2.017: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.08 ), affects (&apos;x86&apos;,)
dev-java/sun-jdk-1.2.2.017: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.09 ), affects (&apos;x86&apos;,)
dev-java/sun-jdk-1.3.1.17: vulnerable via glsa(200602-07) ( ver &lt; 1.4.2.10 ), affects (&apos;x86&apos;,)
dev-java/sun-jdk-1.3.1.17: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.08 ), affects (&apos;x86&apos;,)
dev-java/sun-jdk-1.3.1.17: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.09 ), affects (&apos;x86&apos;,)
dev-java/sun-jdk-1.3.1.17: vulnerable via glsa(200411-38) ( ( ver &lt; 1.4.2.06 &amp;&amp; keywords contains [x86, amd64] ) ), affects (&apos;x86&apos;,)
dev-java/sun-jdk-1.3.1.17-r10: vulnerable via glsa(200602-07) ( ver &lt; 1.4.2.10 ), affects (&apos;x86&apos;,)
dev-java/sun-jdk-1.3.1.17-r10: vulnerable via glsa(200506-14) ( ver &lt; 1.4.2.08 ), affects (&apos;x86&apos;,)
dev-java/sun-jdk-1.3.1.17-r10: vulnerable via glsa(200601-10) ( ver &lt; 1.4.2.09 ), affects (&apos;x86&apos;,)

Please, clean up the above. Thanks.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jakub@gentoo.org</who>
            <bug_when>2006-09-02 16:59:29 0000</bug_when>
            <thetext>Please, do it...</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>nichoj@gentoo.org</who>
            <bug_when>2006-09-02 18:33:23 0000</bug_when>
            <thetext>Fixed in CVS.</thetext>
          </long_desc>
      
    </bug>

</bugzilla>