[java-1.7.0-openjdk/f16] - Added missing changelog entry

Deepak Bhole dbhole at fedoraproject.org
Sun Nov 6 20:03:44 UTC 2011


commit 18f5588033440378256d8ecef450b049f9bab1a3
Author: Deepak Bhole <dbhole at redhat.com>
Date:   Sun Nov 6 15:03:26 2011 -0500

    - Added missing changelog entry

 java-1.7.0-openjdk.spec |   24 +++++++++++++++++++++++-
 1 files changed, 23 insertions(+), 1 deletions(-)
---
diff --git a/java-1.7.0-openjdk.spec b/java-1.7.0-openjdk.spec
index 837ce1f..e1a911f 100644
--- a/java-1.7.0-openjdk.spec
+++ b/java-1.7.0-openjdk.spec
@@ -151,7 +151,7 @@
 
 Name:    java-%{javaver}-%{origin}
 Version: %{javaver}.%{buildver}
-Release: %{icedtea_version}.1%{?dist}
+Release: %{icedtea_version}.2%{?dist}
 # java-1.5.0-ibm from jpackage.org set Epoch to 1 for unknown reasons,
 # and this change was brought into RHEL-4.  java-1.5.0-ibm packages
 # also included the epoch in their virtual provides.  This created a
@@ -1310,6 +1310,28 @@ exit 0
 %doc %{buildoutputdir}/j2sdk-image/jre/LICENSE
 
 %changelog
+* Sun Nov 06 2011 Deepak Bhole <dbhole at redhat.com> - 1.7.0.1-2.0.2
+- Added missing changelog entry
+
+* Sun Nov 06 2011 Deepak Bhole <dbhole at redhat.com> - 1.7.0.1-2.0.1
+- Updated to IcedTea 2.0 tag in the IcedTea OpenJDK7 forest
+- Removed obsoleted patches
+- Added system timezone support
+- Revamp version/release naming scheme to make it proper
+- Security fixes
+  - S7000600, CVE-2011-3547: InputStream skip() information leak
+  - S7019773, CVE-2011-3548: mutable static AWTKeyStroke.ctor
+  - S7023640, CVE-2011-3551: Java2D TransformHelper integer overflow
+  - S7032417, CVE-2011-3552: excessive default UDP socket limit under SecurityManager
+  - S7046823, CVE-2011-3544: missing SecurityManager checks in scripting engine
+  - S7055902, CVE-2011-3521: IIOP deserialization code execution
+  - S7057857, CVE-2011-3554: insufficient pack200 JAR files uncompress error checks
+  - S7064341, CVE-2011-3389: HTTPS: block-wise chosen-plaintext attack against SSL/TLS (BEAST)
+  - S7070134, CVE-2011-3558: HotSpot crashes with sigsegv from PorterStemmer
+  - S7077466, CVE-2011-3556: RMI DGC server remote code execution
+  - S7083012, CVE-2011-3557: RMI registry privileged code execution
+  - S7096936, CVE-2011-3560: missing checkSetFactory calls in HttpsURLConnection
+
 * Mon Aug 29 2011 Deepak Bhole <dbhole at redhat.com> - 1.7.0.0-0.1.20110823.1
 - Provide a "7" version of items to enfore F-16 policy of no Java 7 builds
 - Resolves: rhbz#728706,  patch from Ville Skyttä <ville.skytta at iki dot fi>


More information about the scm-commits mailing list