hg: jdk6/jdk6/jdk: 29 new changesets

abhi.saha at oracle.com abhi.saha at oracle.com
Mon Oct 18 15:36:46 PDT 2010


Changeset: 2ed4d8e9159c
Author:    xuelei
Date:      2010-06-12 00:10 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/2ed4d8e9159c

6914943: Implement final TLS renegotiation fix
Summary: RFC 5746 implementation
Reviewed-by: wetmore, weijun

! src/share/classes/sun/security/ssl/Alerts.java
! src/share/classes/sun/security/ssl/CipherSuite.java
! src/share/classes/sun/security/ssl/CipherSuiteList.java
! src/share/classes/sun/security/ssl/ClientHandshaker.java
! src/share/classes/sun/security/ssl/HandshakeMessage.java
! src/share/classes/sun/security/ssl/Handshaker.java
! src/share/classes/sun/security/ssl/HelloExtensions.java
! src/share/classes/sun/security/ssl/OutputRecord.java
! src/share/classes/sun/security/ssl/SSLEngineImpl.java
! src/share/classes/sun/security/ssl/SSLServerSocketImpl.java
! src/share/classes/sun/security/ssl/SSLSocketImpl.java
! src/share/classes/sun/security/ssl/ServerHandshaker.java
! test/sun/security/pkcs11/sslecc/CipherTest.java
! test/sun/security/ssl/com/sun/net/ssl/internal/ssl/SSLSocketImpl/InvalidateServerSessionRenegotiate.java
! test/sun/security/ssl/javax/net/ssl/NewAPIs/JSSERenegotiate.java
! test/sun/security/ssl/javax/net/ssl/NewAPIs/SSLEngine/CheckStatus.java
! test/sun/security/ssl/javax/net/ssl/NewAPIs/SSLEngine/ConnectionTest.java
! test/sun/security/ssl/javax/net/ssl/NewAPIs/SSLEngine/NoAuthClientAuth.java
! test/sun/security/ssl/javax/net/ssl/NewAPIs/SSLEngine/TestAllSuites.java
! test/sun/security/ssl/sanity/ciphersuites/CheckCipherSuites.java
! test/sun/security/ssl/sanity/interop/CipherTest.java

Changeset: 080d5e740972
Author:    asaha
Date:      2010-06-13 07:10 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/080d5e740972

Merge


Changeset: f591e8c11b09
Author:    asaha
Date:      2010-06-15 21:58 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/f591e8c11b09

Merge


Changeset: 9a2c6c57caa1
Author:    weijun
Date:      2010-06-17 12:41 +0800
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/9a2c6c57caa1

6957564: Disclosure of DNS server IP address
Reviewed-by: xuelei, chegar

! src/share/classes/com/sun/jndi/dns/DnsContextFactory.java

Changeset: dafef320b7e5
Author:    weijun
Date:      2010-06-17 12:41 +0800
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/dafef320b7e5

6958060: Malformed AP-REQ crashes acceptor side
Reviewed-by: valeriep, xuelei

! src/share/classes/sun/security/jgss/krb5/InitialToken.java

Changeset: d5a9ad8ea905
Author:    bae
Date:      2010-06-22 12:15 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/d5a9ad8ea905

6925710: IndexColorModel.finalize can be made to double free
Reviewed-by: prr

! src/share/classes/java/awt/image/IndexColorModel.java
! src/share/classes/sun/awt/image/BufImgSurfaceData.java
! src/share/native/sun/awt/image/BufImgSurfaceData.c

Changeset: d77434402021
Author:    rupashka
Date:      2010-06-23 13:50 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/d77434402021

[pavel.porvatov]
Fixed 6938813: Swing mutable statics [peter.zhelezniakov]
  Webrevs: http://sa.sfbay.sun.com/projects/swing_data/6-open/6938813.0
  Regression test: test/javax/swing/Security/6938813/bug6938813.java

! src/share/classes/javax/swing/text/html/HTMLEditorKit.java
! src/share/classes/javax/swing/text/html/parser/DTD.java
! src/share/classes/javax/swing/text/html/parser/ParserDelegator.java
+ test/javax/swing/Security/6938813/bug6938813.java

Changeset: 357bb3ba18c4
Author:    prr
Date:      2010-06-24 11:23 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/357bb3ba18c4

6963285: Crash in ICU Opentype layout engine due to mismatch in character counts
Reviewed-by: bae, igor

! src/share/native/sun/font/layout/LayoutEngine.cpp

Changeset: 28503855a149
Author:    asaha
Date:      2010-06-28 15:10 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/28503855a149

Merge


Changeset: 9242f7e22b5d
Author:    bae
Date:      2010-06-30 11:15 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/9242f7e22b5d

6963023: ZDI-CAN-809: Sun JRE JPEGImageWriter.writeImage Remote Code Execution Vulnerability
Reviewed-by: prr

! src/share/native/sun/awt/image/jpeg/imageioJPEG.c

Changeset: 34dd517c7183
Author:    chegar
Date:      2010-06-30 16:51 +0100
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/34dd517c7183

6926623: Thread clone issues
Reviewed-by: hawtin

! src/share/classes/java/lang/Thread.java

Changeset: 1f9e4b58a1f9
Author:    bae
Date:      2010-07-01 11:17 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/1f9e4b58a1f9

6963489: ZDI-CAN-803: Sun JRE ICC Profile Device Information Tag Remote Code Execution Vulnerability
Reviewed-by: prr

! src/share/native/sun/java2d/cmm/lcms/LCMS.c
! src/share/native/sun/java2d/cmm/lcms/cmsxform.c

Changeset: 7fe7aa39b5dc
Author:    michaelm
Date:      2010-07-26 10:40 +0100
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/7fe7aa39b5dc

6952603: NetworkInterface reveals local network address to untrusted code
Reviewed-by: chegar

! src/share/classes/java/net/NetworkInterface.java

Changeset: 3f8ebe7db6e0
Author:    michaelm
Date:      2010-07-26 10:56 +0100
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/3f8ebe7db6e0

6952017: HttpURLConnection chunked encoding issue (Http request splitting)
Reviewed-by: chegar

! src/share/classes/sun/net/www/protocol/http/HttpURLConnection.java

Changeset: 5789c4246c0c
Author:    asaha
Date:      2010-07-27 14:47 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/5789c4246c0c

Merge


Changeset: 9dcb9df28fc1
Author:    asaha
Date:      2010-08-09 09:49 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/9dcb9df28fc1

Merge


Changeset: a049121b193b
Author:    chegar
Date:      2010-08-11 09:34 +0100
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/a049121b193b

6974093: Thread.clone should NOT invoke addUnstarted on started threads
Reviewed-by: dholmes, coffeys

! src/share/classes/java/lang/Thread.java

Changeset: cc18d89db2f8
Author:    asaha
Date:      2010-08-12 08:00 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/cc18d89db2f8

Merge


Changeset: 65605bd0da24
Author:    asaha
Date:      2010-09-09 14:46 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/65605bd0da24

Merge

- src/share/classes/javax/swing/text/html/parser/html32.bdtd

Changeset: 068cae30ff10
Author:    asaha
Date:      2010-09-23 12:05 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/068cae30ff10

Merge


Changeset: 6e389e6349c9
Author:    michaelm
Date:      2010-09-23 08:50 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/6e389e6349c9

6980004: limit HTTP request cookie headers in HttpURLConnection
6961084: limit setting of some request headers in HttpURLConnection
Reviewed-by: chegar

! src/share/classes/sun/net/www/MessageHeader.java
! src/share/classes/sun/net/www/protocol/http/HttpURLConnection.java

Changeset: c4573f15b0f8
Author:    michaelm
Date:      2010-09-23 08:56 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/c4573f15b0f8

6981426: limit use of TRACE method in HttpURLConnection
Reviewed-by: chegar

! src/share/classes/java/net/HttpURLConnection.java

Changeset: 1eaaf0f77762
Author:    asaha
Date:      2010-09-23 12:07 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/1eaaf0f77762

Merge


Changeset: bb1c74cae929
Author:    alexp
Date:      2010-09-28 18:59 +0400
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/bb1c74cae929

6622002: UIDefault.ProxyLazyValue has unsafe reflection usage
Reviewed-by: malenkov

! src/share/classes/javax/swing/UIDefaults.java
+ test/javax/swing/UIDefaults/6622002/bug6622002.java

Changeset: 57681551c11e
Author:    skoppar
Date:      2010-09-28 03:58 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/57681551c11e

6559775: Race allows defaultReadObject to be invoked instead of readFields during deserialization
Reviewed-by: hawtin

! make/java/java/FILES_java.gmk
! src/share/classes/java/io/ObjectInputStream.java
! src/share/classes/java/io/ObjectOutputStream.java
+ src/share/classes/java/io/SerialCallbackContext.java
+ test/java/io/Serializable/6559775/README
+ test/java/io/Serializable/6559775/SerialRace.java
+ test/java/io/Serializable/6559775/SerialVictim.java
+ test/java/io/Serializable/6559775/Test6559775.sh

Changeset: 6b2459c08142
Author:    skoppar
Date:      2010-09-28 04:01 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/6b2459c08142

6966692: defaultReadObject can set a field multiple times
Reviewed-by: hawtin

! src/share/classes/java/io/ObjectStreamClass.java
+ test/java/io/Serializable/6966692/Attack.java
+ test/java/io/Serializable/6966692/README
+ test/java/io/Serializable/6966692/Test6966692.sh
+ test/java/io/Serializable/6966692/Victim.java

Changeset: 02b79f1c8c17
Author:    asaha
Date:      2010-10-05 09:45 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/02b79f1c8c17

Merge


Changeset: 9820f99c66fb
Author:    asaha
Date:      2010-10-07 16:32 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/9820f99c66fb

6990437: Update with correct copyright info for source and test files from SSR10_02 fixes
Reviewed-by: darcy

! src/share/classes/java/io/SerialCallbackContext.java
! test/java/io/Serializable/6559775/SerialRace.java
! test/java/io/Serializable/6559775/SerialVictim.java
! test/java/io/Serializable/6559775/Test6559775.sh
! test/java/io/Serializable/6966692/Attack.java
! test/java/io/Serializable/6966692/Test6966692.sh
! test/java/io/Serializable/6966692/Victim.java

Changeset: 9ee81cf7f507
Author:    asaha
Date:      2010-10-18 15:35 -0700
URL:       http://hg.openjdk.java.net/jdk6/jdk6/jdk/rev/9ee81cf7f507

Merge




More information about the jdk6-dev mailing list