hg: jdk7/tl/jdk: 26 new changesets

chris.hegarty at oracle.com chris.hegarty at oracle.com
Mon Oct 11 06:23:40 PDT 2010


Changeset: 0e3daaccfbdf
Author:    xuelei
Date:      2010-06-12 00:42 -0700
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/0e3daaccfbdf

6914943: Implement final TLS renegotiation fix
Summary: RFC 5746 implementation
Reviewed-by: wetmore, weijun

! src/share/classes/sun/security/ssl/Alerts.java
! src/share/classes/sun/security/ssl/CipherSuite.java
! src/share/classes/sun/security/ssl/CipherSuiteList.java
! src/share/classes/sun/security/ssl/ClientHandshaker.java
! src/share/classes/sun/security/ssl/HandshakeMessage.java
! src/share/classes/sun/security/ssl/Handshaker.java
! src/share/classes/sun/security/ssl/HelloExtensions.java
! src/share/classes/sun/security/ssl/OutputRecord.java
! src/share/classes/sun/security/ssl/SSLEngineImpl.java
! src/share/classes/sun/security/ssl/SSLServerSocketImpl.java
! src/share/classes/sun/security/ssl/SSLSocketImpl.java
! src/share/classes/sun/security/ssl/ServerHandshaker.java
! test/sun/security/pkcs11/fips/CipherTest.java
! test/sun/security/pkcs11/sslecc/CipherTest.java
! test/sun/security/ssl/com/sun/net/ssl/internal/ssl/SSLSocketImpl/InvalidateServerSessionRenegotiate.java
! test/sun/security/ssl/javax/net/ssl/NewAPIs/JSSERenegotiate.java
! test/sun/security/ssl/javax/net/ssl/NewAPIs/SSLEngine/CheckStatus.java
! test/sun/security/ssl/javax/net/ssl/NewAPIs/SSLEngine/ConnectionTest.java
! test/sun/security/ssl/javax/net/ssl/NewAPIs/SSLEngine/NoAuthClientAuth.java
! test/sun/security/ssl/javax/net/ssl/NewAPIs/SSLEngine/TestAllSuites.java
! test/sun/security/ssl/sanity/ciphersuites/CheckCipherSuites.java
! test/sun/security/ssl/sanity/interop/CipherTest.java

Changeset: 5d7925b886b9
Author:    asaha
Date:      2010-06-13 07:40 -0700
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/5d7925b886b9

Merge


Changeset: 34080da7fab2
Author:    asaha
Date:      2010-06-15 08:12 -0700
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/34080da7fab2

Merge


Changeset: 2bad540d9b5b
Author:    weijun
Date:      2010-06-17 12:59 +0800
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/2bad540d9b5b

6957564: Disclosure of DNS server IP address
Reviewed-by: xuelei, chegar

! src/share/classes/com/sun/jndi/dns/DnsContextFactory.java

Changeset: bdc6a3dc3e57
Author:    weijun
Date:      2010-06-17 12:59 +0800
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/bdc6a3dc3e57

6958060: Malformed AP-REQ crashes acceptor side
Reviewed-by: valeriep, xuelei

! src/share/classes/sun/security/jgss/krb5/InitialToken.java

Changeset: b9d3a1a8b682
Author:    bae
Date:      2010-06-18 13:18 +0400
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/b9d3a1a8b682

6925710: IndexColorModel.finalize can be made to double free
Reviewed-by: igor, prr, hawtin

! src/share/classes/java/awt/image/IndexColorModel.java
! src/share/classes/sun/awt/image/BufImgSurfaceData.java
! src/share/native/sun/awt/image/BufImgSurfaceData.c

Changeset: 9ed7ae1e911c
Author:    rupashka
Date:      2010-06-21 16:47 +0400
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/9ed7ae1e911c

6938813: Swing mutable statics
Reviewed-by: peterz, alexp

! src/share/classes/javax/swing/text/html/HTMLEditorKit.java
! src/share/classes/javax/swing/text/html/parser/DTD.java
! src/share/classes/javax/swing/text/html/parser/ParserDelegator.java
+ test/javax/swing/Security/6938813/bug6938813.java

Changeset: e06652744211
Author:    asaha
Date:      2010-06-24 10:56 -0700
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/e06652744211

Merge

- make/com/sun/inputmethods/Makefile
- make/com/sun/inputmethods/indicim/Makefile
- make/com/sun/inputmethods/thaiim/Makefile
- src/share/classes/com/sun/inputmethods/internal/indicim/DevanagariInputMethodDescriptor.java
- src/share/classes/com/sun/inputmethods/internal/indicim/DevanagariTables.java
- src/share/classes/com/sun/inputmethods/internal/indicim/IndicInputMethod.java
- src/share/classes/com/sun/inputmethods/internal/indicim/IndicInputMethodImpl.java
- src/share/classes/com/sun/inputmethods/internal/indicim/java.awt.im.spi.InputMethodDescriptor
- src/share/classes/com/sun/inputmethods/internal/indicim/resources/DisplayNames.properties
- src/share/classes/com/sun/inputmethods/internal/indicim/resources/DisplayNames_de.properties
- src/share/classes/com/sun/inputmethods/internal/indicim/resources/DisplayNames_es.properties
- src/share/classes/com/sun/inputmethods/internal/indicim/resources/DisplayNames_fr.properties
- src/share/classes/com/sun/inputmethods/internal/indicim/resources/DisplayNames_it.properties
- src/share/classes/com/sun/inputmethods/internal/indicim/resources/DisplayNames_ja.properties
- src/share/classes/com/sun/inputmethods/internal/indicim/resources/DisplayNames_ko.properties
- src/share/classes/com/sun/inputmethods/internal/indicim/resources/DisplayNames_sv.properties
- src/share/classes/com/sun/inputmethods/internal/indicim/resources/DisplayNames_zh_CN.properties
- src/share/classes/com/sun/inputmethods/internal/indicim/resources/DisplayNames_zh_TW.properties
- src/share/classes/com/sun/inputmethods/internal/thaiim/ThaiInputMethod.java
- src/share/classes/com/sun/inputmethods/internal/thaiim/ThaiInputMethodDescriptor.java
- src/share/classes/com/sun/inputmethods/internal/thaiim/ThaiInputMethodImpl.java
- src/share/classes/com/sun/inputmethods/internal/thaiim/ThaiRules.java
- src/share/classes/com/sun/inputmethods/internal/thaiim/java.awt.im.spi.InputMethodDescriptor
- src/share/classes/com/sun/inputmethods/internal/thaiim/resources/DisplayNames.properties
- src/share/classes/javax/swing/text/html/parser/html32.bdtd
- test/java/nio/channels/ServerSocketChannel/AcceptAddress.java

Changeset: 505befdee800
Author:    asaha
Date:      2010-06-28 13:07 -0700
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/505befdee800

Merge


Changeset: 5f50e564faa4
Author:    bae
Date:      2010-06-30 11:32 +0400
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/5f50e564faa4

6963023: ZDI-CAN-809: Sun JRE JPEGImageWriter.writeImage Remote Code Execution Vulnerability
Reviewed-by: prr

! src/share/native/sun/awt/image/jpeg/imageioJPEG.c

Changeset: de8991ef7b1b
Author:    chegar
Date:      2010-06-30 16:08 +0100
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/de8991ef7b1b

6926623: Thread clone issues
Reviewed-by: hawtin

! src/share/classes/java/lang/Thread.java

Changeset: b2e9e8d1805c
Author:    chegar
Date:      2010-06-30 16:24 +0100
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/b2e9e8d1805c

Merge


Changeset: 32cac17b629e
Author:    bae
Date:      2010-07-01 12:04 +0400
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/32cac17b629e

6963489: ZDI-CAN-803: Sun JRE ICC Profile Device Information Tag Remote Code Execution Vulnerability
Reviewed-by: prr

! src/share/native/sun/java2d/cmm/lcms/LCMS.c
! src/share/native/sun/java2d/cmm/lcms/cmsxform.c

Changeset: 0dbecf98ed6d
Author:    asaha
Date:      2010-07-01 08:31 -0700
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/0dbecf98ed6d

Merge

- test/java/nio/charset/coders/Surrogate.java

Changeset: f56ef0d441b0
Author:    asaha
Date:      2010-07-08 08:23 -0700
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/f56ef0d441b0

Merge


Changeset: 814604212cc1
Author:    asaha
Date:      2010-07-16 09:26 -0700
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/814604212cc1

Merge

- test/tools/launcher/Makefile.SolarisRunpath
- test/tools/launcher/lib/i386/lib32/lib32/liblibrary.so
- test/tools/launcher/lib/i386/lib32/liblibrary.so
- test/tools/launcher/lib/sparc/lib32/lib32/liblibrary.so
- test/tools/launcher/lib/sparc/lib32/liblibrary.so
- test/tools/launcher/lib/sparc/lib64/lib64/liblibrary.so
- test/tools/launcher/lib/sparc/lib64/liblibrary.so

Changeset: e860d935e6e7
Author:    michaelm
Date:      2010-07-22 16:33 +0100
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/e860d935e6e7

6952603: NetworkInterface reveals local network address to untrusted code
Reviewed-by: chegar

! src/share/classes/java/net/NetworkInterface.java

Changeset: e857e8316bf1
Author:    michaelm
Date:      2010-07-22 17:26 +0100
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/e857e8316bf1

6952017: HttpURLConnection chunked encoding issue (Http request splitting)
Reviewed-by: chegar

! src/share/classes/sun/net/www/protocol/http/HttpURLConnection.java

Changeset: 9fa1f8b38b6f
Author:    chegar
Date:      2010-08-11 09:32 +0100
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/9fa1f8b38b6f

6974093: Thread.clone should NOT invoke addUnstarted on started threads
Reviewed-by: dholmes, coffeys

! src/share/classes/java/lang/Thread.java

Changeset: f5ed38dc8d36
Author:    michaelm
Date:      2010-09-16 08:08 -0700
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/f5ed38dc8d36

6981426: limit use of TRACE method in HttpURLConnection
Reviewed-by: chegar

! src/share/classes/java/net/HttpURLConnection.java
! src/share/classes/java/net/NetPermission.java

Changeset: e0806d924a42
Author:    michaelm
Date:      2010-09-16 09:22 -0700
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/e0806d924a42

6980004: limit HTTP request cookie headers in HttpURLConnection
6961084: limit setting of some request headers in HttpURLConnection
Reviewed-by: chegar

! src/share/classes/sun/net/www/MessageHeader.java
! src/share/classes/sun/net/www/protocol/http/HttpURLConnection.java

Changeset: 11a08845b979
Author:    michaelm
Date:      2010-09-23 03:22 -0700
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/11a08845b979

6986400: Change Cookie to Cookie2 in 6980004 fix
Summary: fix error in previous fix for 6980004
Reviewed-by: chegar

! src/share/classes/sun/net/www/protocol/http/HttpURLConnection.java

Changeset: 0f510337dadb
Author:    alexp
Date:      2010-10-01 18:39 +0400
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/0f510337dadb

6622002: UIDefault.ProxyLazyValue has unsafe reflection usage
Reviewed-by: malenkov

! src/share/classes/javax/swing/UIDefaults.java
+ test/javax/swing/UIDefaults/6622002/bug6622002.java

Changeset: 33cc629889bd
Author:    chegar
Date:      2010-10-08 11:27 +0100
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/33cc629889bd

Merge

! src/share/classes/com/sun/jndi/dns/DnsContextFactory.java
! src/share/classes/java/lang/Thread.java
! src/share/classes/sun/net/www/protocol/http/HttpURLConnection.java
! src/share/native/sun/awt/image/BufImgSurfaceData.c
! src/share/native/sun/java2d/cmm/lcms/LCMS.c
! src/share/native/sun/java2d/cmm/lcms/cmsxform.c

Changeset: a50828844ccc
Author:    chegar
Date:      2010-10-08 11:28 +0100
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/a50828844ccc

Merge


Changeset: 78bbe8fce2d4
Author:    chegar
Date:      2010-10-11 10:55 +0100
URL:       http://hg.openjdk.java.net/jdk7/tl/jdk/rev/78bbe8fce2d4

Merge





More information about the security-dev mailing list