Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 649968 - <dev-java/icedtea-3.7.0, <dev-java/icedtea-bin-3.7.0: Multiple vulnerabilties
Summary: <dev-java/icedtea-3.7.0, <dev-java/icedtea-bin-3.7.0: Multiple vulnerabilties
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Security
URL: http://blog.fuseyism.com/index.php/20...
Whiteboard: ~3 [noglsa]
Keywords:
Depends on:
Blocks:
 
Reported: 2018-03-08 22:12 UTC by James Le Cuirot
Modified: 2019-03-12 06:35 UTC (History)
2 users (show)

See Also:
Package list:
dev-java/icedtea-bin-3.7.0 amd64 ppc64 x86
Runtime testing required: ---
stable-bot: sanity-check+


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description James Le Cuirot gentoo-dev 2018-03-08 22:12:43 UTC
Bumps coming imminently.
Comment 1 Larry the Git Cow gentoo-dev 2018-03-08 22:17:43 UTC
The bug has been referenced in the following commit(s):

https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=223a0a203c2db4dbef4cbd3b8c4b776f3376acd9

commit 223a0a203c2db4dbef4cbd3b8c4b776f3376acd9
Author:     James Le Cuirot <chewi@gentoo.org>
AuthorDate: 2018-03-08 22:17:04 +0000
Commit:     James Le Cuirot <chewi@gentoo.org>
CommitDate: 2018-03-08 22:17:28 +0000

    dev-java/icedtea-bin: Version bump to 3.7.0 with security fixes
    
    A stack alignment issue has been reported on x86. This version has
    been built with -mincoming-stack-boundary=2 to work around it.
    
    Bug: https://bugs.gentoo.org/649968
    Package-Manager: Portage-2.3.24, Repoman-2.3.6

 dev-java/icedtea-bin/Manifest                 |  14 +++
 dev-java/icedtea-bin/icedtea-bin-3.7.0.ebuild | 160 ++++++++++++++++++++++++++
 2 files changed, 174 insertions(+)

https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=a8b9d0d471f91633fa2ddd83defd8c29c843bc31

commit a8b9d0d471f91633fa2ddd83defd8c29c843bc31
Author:     James Le Cuirot <chewi@gentoo.org>
AuthorDate: 2018-03-08 22:15:36 +0000
Commit:     James Le Cuirot <chewi@gentoo.org>
CommitDate: 2018-03-08 22:17:26 +0000

    dev-java/icedtea: Version bump to 3.7.0 with security fixes
    
    A stack alignment issue has been reported on x86. We are working
    around it by adding -mincoming-stack-boundary=2 to the flags.
    
    Bug: https://bugs.gentoo.org/649968
    Package-Manager: Portage-2.3.24, Repoman-2.3.6

 dev-java/icedtea/Manifest             |  11 +
 dev-java/icedtea/icedtea-3.7.0.ebuild | 425 ++++++++++++++++++++++++++++++++++
 2 files changed, 436 insertions(+)}
Comment 2 Larry the Git Cow gentoo-dev 2018-03-08 22:20:57 UTC
The bug has been referenced in the following commit(s):

https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=7599aadf2c0e65255c437c7896741a9e77ca941e

commit 7599aadf2c0e65255c437c7896741a9e77ca941e
Author:     James Le Cuirot <chewi@gentoo.org>
AuthorDate: 2018-03-08 22:20:16 +0000
Commit:     James Le Cuirot <chewi@gentoo.org>
CommitDate: 2018-03-08 22:20:50 +0000

    dev-java/icedtea: Remove vulnerable 3.6.0
    
    Bug: https://bugs.gentoo.org/649968
    Package-Manager: Portage-2.3.24, Repoman-2.3.6

 dev-java/icedtea/Manifest             |  11 -
 dev-java/icedtea/icedtea-3.6.0.ebuild | 422 ----------------------------------
 2 files changed, 433 deletions(-)}
Comment 3 James Le Cuirot gentoo-dev 2018-03-08 22:21:59 UTC
Bumped. Arch teams, please stabilise.
Comment 4 Agostino Sarubbo gentoo-dev 2018-03-10 18:25:39 UTC
amd64 stable
Comment 5 Thomas Deutschmann (RETIRED) gentoo-dev 2018-03-11 02:18:00 UTC
x86 stable
Comment 6 Matt Turner gentoo-dev 2018-04-08 06:02:43 UTC
ppc64 stable. last arch done.
Comment 7 Larry the Git Cow gentoo-dev 2018-04-08 18:46:50 UTC
The bug has been referenced in the following commit(s):

https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=7996cd02183a3ec38496f900249a0f2885cbb1eb

commit 7996cd02183a3ec38496f900249a0f2885cbb1eb
Author:     James Le Cuirot <chewi@gentoo.org>
AuthorDate: 2018-04-08 18:46:13 +0000
Commit:     James Le Cuirot <chewi@gentoo.org>
CommitDate: 2018-04-08 18:46:39 +0000

    dev-java/icedtea-bin: Drop old and vulnerable 3.6.0
    
    Bug: https://bugs.gentoo.org/649968
    Package-Manager: Portage-2.3.28, Repoman-2.3.9

 dev-java/icedtea-bin/Manifest                 |  14 ---
 dev-java/icedtea-bin/icedtea-bin-3.6.0.ebuild | 160 --------------------------
 2 files changed, 174 deletions(-)}