hg: jdk6/jdk6/jdk: 31 new changesets

abhijit.saha at sun.com abhijit.saha at sun.com
Wed Aug 5 11:55:36 PDT 2009


Changeset: 3d04f8751b05
Author:    bae
Date:      2009-04-29 19:32 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/3d04f8751b05

6823373: [ZDI-CAN-460] Java Web Start JPEG header parsing needs more scruity
Reviewed-by: prr

! src/share/native/sun/awt/splashscreen/splashscreen_jpeg.c

Changeset: 5b92e1ac3cf8
Author:    bae
Date:      2009-04-29 19:48 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/5b92e1ac3cf8

6656625: ImageReaderSpi.STANDARD_INPUT_TYPE/ImageWriterSpi.STANDARD_OUTPUT_TYPE are mutable static (findbugs)
Reviewed-by: prr

! src/share/classes/com/sun/imageio/plugins/bmp/BMPImageReaderSpi.java
! src/share/classes/com/sun/imageio/plugins/bmp/BMPImageWriterSpi.java
! src/share/classes/com/sun/imageio/plugins/gif/GIFImageReaderSpi.java
! src/share/classes/com/sun/imageio/plugins/gif/GIFImageWriterSpi.java
! src/share/classes/com/sun/imageio/plugins/jpeg/JPEGImageReaderSpi.java
! src/share/classes/com/sun/imageio/plugins/jpeg/JPEGImageWriterSpi.java
! src/share/classes/com/sun/imageio/plugins/png/PNGImageReaderSpi.java
! src/share/classes/com/sun/imageio/plugins/png/PNGImageWriterSpi.java
! src/share/classes/com/sun/imageio/plugins/wbmp/WBMPImageReaderSpi.java
! src/share/classes/com/sun/imageio/plugins/wbmp/WBMPImageWriterSpi.java
! src/share/classes/javax/imageio/spi/ImageReaderSpi.java
! src/share/classes/javax/imageio/spi/ImageWriterSpi.java

Changeset: 291795d6538c
Author:    bae
Date:      2009-04-29 20:02 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/291795d6538c

6657133: Mutable statics in imageio plugins (findbugs)
Reviewed-by: prr

! src/share/classes/com/sun/imageio/stream/StreamCloser.java
! src/share/classes/javax/imageio/plugins/bmp/BMPImageWriteParam.java
! src/share/classes/javax/imageio/stream/FileCacheImageInputStream.java
! src/share/classes/javax/imageio/stream/FileCacheImageOutputStream.java
! src/share/lib/security/java.security
! src/share/lib/security/java.security-solaris
! src/share/lib/security/java.security-windows

Changeset: ec321bbac6cd
Author:    malenkov
Date:      2009-04-29 20:37 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/ec321bbac6cd

6660539: Introspector shares cache of mutable BeanInfo between AppContexts.
Reviewed-by: peterz

! src/share/classes/java/beans/Introspector.java
+ test/java/beans/Introspector/Test6660539.java

Changeset: ed63c186574c
Author:    malenkov
Date:      2009-04-29 20:47 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/ed63c186574c

6777487: Encoder allows reading private variables with certain names
Reviewed-by: peterz

! src/share/classes/java/beans/MetaData.java
+ test/java/beans/XMLEncoder/6777487/TestBox.java
+ test/java/beans/XMLEncoder/6777487/TestCheckedCollection.java
+ test/java/beans/XMLEncoder/6777487/TestCheckedList.java
+ test/java/beans/XMLEncoder/6777487/TestCheckedMap.java
+ test/java/beans/XMLEncoder/6777487/TestCheckedRandomAccessList.java
+ test/java/beans/XMLEncoder/6777487/TestCheckedSet.java
+ test/java/beans/XMLEncoder/6777487/TestCheckedSortedMap.java
+ test/java/beans/XMLEncoder/6777487/TestCheckedSortedSet.java
+ test/java/beans/XMLEncoder/6777487/TestEncoder.java
+ test/java/beans/XMLEncoder/6777487/TestEnumMap.java
+ test/java/beans/XMLEncoder/6777487/TestEnumSet.java

Changeset: 7dad07b15c32
Author:    asaha
Date:      2009-04-29 14:43 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/7dad07b15c32

Merge


Changeset: f6b4524ff699
Author:    art
Date:      2009-05-04 13:45 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/f6b4524ff699

6656586: Cursor.predefined is protected static mutable (findbugs)
Reviewed-by: igor

! src/share/classes/java/awt/Cursor.java

Changeset: e8bc0c764294
Author:    peterz
Date:      2009-05-05 11:36 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/e8bc0c764294

6588003: LayoutQueue shares mutable implementation across AppContexts
Reviewed-by: alexp

! src/share/classes/javax/swing/text/LayoutQueue.java
+ test/javax/swing/text/LayoutQueue/Test6588003.java

Changeset: 7e16c0508c8b
Author:    jccollet
Date:      2009-05-05 10:59 +0200
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/7e16c0508c8b

6801497: Proxy is assumed to be immutable but is non-final
Summary: Cloned the proxy instance when necessary
Reviewed-by: chegar

! src/share/classes/java/net/Socket.java
! src/share/classes/java/net/URL.java

Changeset: f1250cd32531
Author:    emcmanus
Date:      2009-05-07 15:39 +0200
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/f1250cd32531

6736293: OpenType checks can be bypassed through finalizer resurrection
Reviewed-by: hawtin

! src/share/classes/javax/management/openmbean/OpenMBeanAttributeInfoSupport.java
! src/share/classes/javax/management/openmbean/OpenType.java

Changeset: 94dbd520b832
Author:    amenkov
Date:      2009-05-13 14:44 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/94dbd520b832

6777448: JDK13Services.getProviders creates instances with full privileges [hawtin, alexp]
Reviewed-by: hawtin, alexp

! src/share/classes/com/sun/media/sound/JSSecurityManager.java

Changeset: afdde857875c
Author:    amenkov
Date:      2009-05-13 14:44 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/afdde857875c

6738524: JDK13Services allows read access to system properties from untrusted code
Reviewed-by: hawtin

! src/share/classes/com/sun/media/sound/JDK13Services.java

Changeset: 9215e9cfcb9f
Author:    amenkov
Date:      2009-05-13 14:45 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/9215e9cfcb9f

6657625: RmfFileReader/StandardMidiFileWriter.types are public mutable statics (findbugs)
Reviewed-by: hawtin

! src/share/classes/com/sun/media/sound/StandardMidiFileWriter.java

Changeset: 3977b505bba4
Author:    chegar
Date:      2009-05-13 09:43 +0100
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/3977b505bba4

6801071: Remote sites can compromise user privacy and possibly hijack web sessions
Reviewed-by: jccollet, hawtin

! make/sun/net/FILES_java.gmk
! src/share/classes/java/net/Socket.java
! src/share/classes/java/net/SocksSocketImpl.java
! src/share/classes/java/net/URL.java
+ src/share/classes/sun/net/ApplicationProxy.java
! src/share/classes/sun/net/www/protocol/http/HttpURLConnection.java

Changeset: 87f3a75b59ee
Author:    chegar
Date:      2009-05-13 04:15 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/87f3a75b59ee

Merge


Changeset: f237aaa46752
Author:    asaha
Date:      2009-06-12 12:42 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/f237aaa46752

Merge

- README-builds.html
- README.html
- make/ASSEMBLY_EXCEPTION
- make/LICENSE
- make/README
- make/README-builds.html
- make/README.html
- make/THIRD_PARTY_README
- make/TRADEMARK

Changeset: 65b13488ce11
Author:    malenkov
Date:      2009-06-18 14:03 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/65b13488ce11

6660049: Synth Region.uiToRegionMap/lowerCaseNameMap are mutable statics
Reviewed-by: hawtin

! src/share/classes/javax/swing/plaf/synth/Region.java
+ test/javax/swing/plaf/synth/Test6660049.java

Changeset: 605a9e62b09d
Author:    asaha
Date:      2009-06-22 09:24 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/605a9e62b09d

6656610: AccessibleResourceBundle.getContents exposes mutable static (findbugs)
Reviewed-by: hawtin

! src/share/classes/javax/accessibility/AccessibleResourceBundle.java

Changeset: f29b9b542bec
Author:    mullan
Date:      2009-06-22 15:24 -0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/f29b9b542bec

6824440: XML Signature HMAC issue
Reviewed-by: asaha

! src/share/classes/com/sun/org/apache/xml/internal/security/algorithms/implementations/IntegrityHmac.java
! src/share/classes/org/jcp/xml/dsig/internal/dom/DOMHMACSignatureMethod.java
+ test/com/sun/org/apache/xml/internal/security/TruncateHMAC.java
+ test/com/sun/org/apache/xml/internal/security/signature-enveloping-hmac-sha1-trunclen-0-attack.xml
+ test/com/sun/org/apache/xml/internal/security/signature-enveloping-hmac-sha1-trunclen-8-attack.xml
! test/javax/xml/crypto/dsig/GenerationTests.java
! test/javax/xml/crypto/dsig/ValidationTests.java
+ test/javax/xml/crypto/dsig/data/signature-enveloping-hmac-sha1-trunclen-0-attack.xml
+ test/javax/xml/crypto/dsig/data/signature-enveloping-hmac-sha1-trunclen-8-attack.xml

Changeset: dcd63f0ad8b1
Author:    asaha
Date:      2009-06-22 13:27 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/dcd63f0ad8b1

Merge


Changeset: a244afd90e78
Author:    mullan
Date:      2009-06-23 15:03 -0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/a244afd90e78

6854114: XML Signature HMAC issue (Part 2)
Reviewed-by: asaha

! src/share/classes/org/jcp/xml/dsig/internal/dom/DOMHMACSignatureMethod.java

Changeset: 5439717cc9ae
Author:    mullan
Date:      2009-06-23 15:07 -0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/5439717cc9ae

Merge


Changeset: 3415cc509186
Author:    asaha
Date:      2009-06-23 14:43 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/3415cc509186

Merge


Changeset: 78b1b25cf69f
Author:    ksrini
Date:      2009-06-25 07:46 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/78b1b25cf69f

6830335: Java JAR Pack200 Decompression Integer Overflow Vulnerability
Summary: Fixes a potential vulnerability in the unpack200 logic, by adding extra checks, a back-port.
Reviewed-by: asaha

! src/share/native/com/sun/java/util/jar/pack/unpack.cpp
! test/closed/tools/pack200/packfiles.jar

Changeset: 7de643a8599d
Author:    asaha
Date:      2009-07-13 12:17 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/7de643a8599d

Merge


Changeset: 0e38a6d0b9a0
Author:    vinnie
Date:      2009-07-15 15:58 +0100
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/0e38a6d0b9a0

6657619: DnsContext.debug is public static mutable (findbugs)
Reviewed-by: alanb

! src/share/classes/com/sun/jndi/dns/DnsContext.java
+ test/com/sun/jndi/dns/CheckAccess.java

Changeset: 795e9800622a
Author:    vinnie
Date:      2009-07-15 16:18 +0100
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/795e9800622a

6657695: AbstractSaslImpl.logger is a static mutable (findbugs)
Reviewed-by: alanb

! src/share/classes/com/sun/security/sasl/util/AbstractSaslImpl.java
+ test/com/sun/security/sasl/util/CheckAccess.java

Changeset: 75ddec763ddc
Author:    asaha
Date:      2009-07-28 15:58 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/75ddec763ddc

Merge


Changeset: 49987ddfc5e1
Author:    asaha
Date:      2009-07-30 17:06 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/49987ddfc5e1

6803688: Integrate latest JAX-WS (2.1.6) in to JDK 6u14
Reviewed-by: ramap

! THIRD_PARTY_README

Changeset: bf11c5b6cbfa
Author:    asaha
Date:      2009-08-04 12:04 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/bf11c5b6cbfa

6843003: Windows 2008 R2 system recognition
Reviewed-by: darcy

! src/windows/native/java/lang/java_props_md.c

Changeset: c4d3fdfeeeab
Author:    asaha
Date:      2009-08-05 11:47 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/c4d3fdfeeeab

Merge





More information about the jdk6-dev mailing list