[SECURITY] IcedTea6 1.7.9, 1.8.6, 1.9.6 Released!

Dr Andrew John Hughes ahughes at redhat.com
Wed Feb 9 05:29:57 PST 2011


We are pleased to announce a new set of security releases, IcedTea6 1.7.9, IcedTea6 1.8.6
and IcedTea6 1.9.6.
 
This update contains the following security updates:
 
* S4421494, CVE-2010-4476: infinite loop while parsing double literal.

The IcedTea project provides a harness to build the source code from
OpenJDK6 using Free Software build tools. It also includes the only
Free Java plugin and Web Start implementation, and support for
additional architectures over and above x86, x86_64 and SPARC via the
Zero assembler port.
 
What’s New?
—————–

IcedTea6 1.7.9
==============

* Security updates
  - S4421494, CVE-2010-4476: infinite loop while parsing double literal.

IcedTea6 1.8.6
==============

* Security updates
  - S4421494, CVE-2010-4476: infinite loop while parsing double literal.

IcedTea6 1.9.6
==============

* Security updates
  - S4421494, CVE-2010-4476: infinite loop while parsing double literal.

The tarballs can be downloaded from:
 
* http://icedtea.classpath.org/download/source/icedtea6-1.7.9.tar.gz
* http://icedtea.classpath.org/download/source/icedtea6-1.8.6.tar.gz
* http://icedtea.classpath.org/download/source/icedtea6-1.9.6.tar.gz
 
SHA256 sums:

496b615ccad2a950783b1a2f30a8657956f8c9d9bccb6ab9effc1164ab830792  icedtea6-1.7.9.tar.gz
d392c95e76b5bdf21fb4bce8fc5cdc530bdf5bda014cb96fa9cd3efdfdbeff87  icedtea6-1.8.6.tar.gz
100e61fbc3157b4839413951b0247f7ccabb0dcff6d037fbb372d5a13088adc2  icedtea6-1.9.6.tar.gz

The following people helped with these releases:

Andrew Haley, Andrew John Hughes, Dmitry Nadezhin

We would also like to thank the bug reporters and testers!
 
To get started:
$ tar xzf icedtea6-<ver>.tar.gz
$ cd icedtea6-<ver>
 
Full build requirements and instructions are in INSTALL:
$ ./configure [--enable-zero --enable-pulse-java --enable-systemtap ...]
$ make
-- 
Andrew :)

Free Java Software Engineer
Red Hat, Inc. (http://www.redhat.com)

Support Free Java!
Contribute to GNU Classpath and IcedTea
http://www.gnu.org/software/classpath
http://icedtea.classpath.org
PGP Key: F5862A37 (https://keys.indymedia.org/)
Fingerprint = EA30 D855 D50F 90CD F54D  0698 0713 C3ED F586 2A37



More information about the distro-pkg-dev mailing list