Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 433491 - Provide dev-java/oracle-jre-bin 1.7 Update 7 due to CVE-2012-4681
Summary: Provide dev-java/oracle-jre-bin 1.7 Update 7 due to CVE-2012-4681
Status: RESOLVED DUPLICATE of bug 433465
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: [OLD] Java (show other bugs)
Hardware: All All
: Normal major (vote)
Assignee: Gentoo Linux bug wranglers
URL: http://cve.mitre.org/cgi-bin/cvename....
Whiteboard:
Keywords: SECURITY
Depends on:
Blocks:
 
Reported: 2012-08-31 06:46 UTC by Robin Kara
Modified: 2012-09-02 19:18 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Robin Kara 2012-08-31 06:46:43 UTC
Hello guys!

There is a kinda critical security issue in the latest (still masked for ~amd64) version of dev-java/oracle-jre-bin. Since the CVE[1] says other Versions may be affected and there are already wide spread working exploits for this, we should really introduce the new version. All OSes/platforms are affected.

Are you able to do this soon? If not please give me feedback, so I will provide an ebuild which you should check since I don't do this too often :)

Thanks,
Robin

[1] http://cve.mitre.org/cgi-bin/cvename.cgi?name=2012-4681
Comment 1 Robin Kara 2012-08-31 06:58:42 UTC
Assigned to Java, should fit better :)
Comment 2 Matt Turner gentoo-dev 2012-08-31 17:01:47 UTC
Don't CC arches yourself. *Especially* if you can't do it right.

dev-java/oracle-jre-bin/oracle-jre-bin-1.7.0.5-r1.ebuild:KEYWORDS="~amd64 x86"
dev-java/oracle-jre-bin/oracle-jre-bin-1.7.0.5-r2.ebuild:KEYWORDS="~amd64 ~x86"
dev-java/oracle-jre-bin/oracle-jre-bin-1.7.0.6.ebuild:KEYWORDS="~amd64 ~x86"
Comment 3 Vlastimil Babka (Caster) (RETIRED) gentoo-dev 2012-09-02 19:18:27 UTC

*** This bug has been marked as a duplicate of bug 433465 ***