summaryrefslogtreecommitdiff
path: root/lang/sun-jdk6
AgeCommit message (Collapse)AuthorFilesLines
2011-10-20Update sun-{jdk,jre}6 to 6.0.29, aka, 6u29.obache2-11/+11
Changes: [Olson Data 2011g] Java SE 6u29 contains Olson time zone data version 2011g. For more information, refer to Timezone Data Versions in the JRE Software . [Skipped Version Number] Release Java SE 6u29 follows release Java SE 6u27. There is no publicly available Java SE 6u28 release. Oracle used release version 6u28 for an internal build, which was not necessary once the fixes delivered on Java SE 6u29 were released. [Blacklist Entries] This update release includes the following new entries to the Blacklist: * Cisco AnyConnect Mobility Client * Microsoft UAG Client [RMI Registry Issue] A bug in the rmiregistry command included in this release may cause unintended exceptions to be thrown when an RMI server attempts to bind an exported object which includes codebase annotations using the "file:" URL scheme. The RMI servers most likely to be effected are those which are invoked only by RMI clients executing on the same host as the server. RMI annotates codebase information as part of the serialized state of a remote object reference to assist RMI clients in loading the required classes and interfaces associated with the object at runtime. Exported objects which are looked up in the RMI registry and invoked by RMI clients running on hosts other than the server are usually annotated with codebase URL schemes, such as "http:" or "ftp:" and these should continue to work correctly. As a workaround, RMI servers can set the java.rmi.server.codebase property to use codebase URLs other than the "file:" scheme for the objects they export. [Bug Fixes] This release contains fixes for security vulnerabilities. For more information, please see Oracle Java SE Critical Patch Update advisory.
2011-09-10Update sun-{jre,jdk} to 6.0.27.obache2-11/+11
Highlights This update release contains important enhancements for java applications: * improved performance and stability * Certification for Firefox 5 Olson Data 2011g
2011-08-1664 bit linux systems deserve a 64 bit java runtimeabs2-1/+3951
2011-08-1664 bit linux systems deserve a 64 bit java runtimeabs2-2/+7
2011-07-12Move MACHINE_PLATFORM conditional below includion of Makefile.common, it ↵obache1-3/+3
reqire bsd.prefs.mk.
2011-07-09Exclude CHECK_SHLIBS_SUPPORTED on Linux-*-x86_64abs1-1/+5
2011-06-09Update sun-{jre,jdk}6 to 6.0.26, aka 6u26.obache4-16/+11
Java SE 6 Update 26 * Olson Data 2011g * Bug fixes This release contains fixes for security vulnerabilities. For more information, please see Oracle Java SE Critical Patch Update advisory: http://www.oracle.com/technetwork/topics/security/javacpujune2011-313339.html Java SE 6 Update 25 * Olson Data 2011b * Java Hotspot VM 20 * Performance Improvement to BigDecimal * Performance Improvement to java.util.logging.LogRecord * Bug Fixes
2011-02-21Update sun-{jre,jdk}6 to 6.0.24.obache3-327/+418
Java SE 6 Update 24 * OlsonData 2010o * Java DB 10.6.2.1 * Bug Fixes, include following security fix. CVE-2010-4422 CVE-2010-4447 CVE-2010-4448 CVE-2010-4450 CVE-2010-4451 CVE-2010-4452 CVE-2010-4454 CVE-2010-4462 CVE-2010-4463 CVE-2010-4465 CVE-2010-4466 CVE-2010-4467 CVE-2010-4468 CVE-2010-4469 CVE-2010-4470 CVE-2010-4471 CVE-2010-4472 CVE-2010-4473 CVE-2010-4474 CVE-2010-4475 CVE-2010-4476 Java SE 6 Update 23 * OlsonData 2010l * Java Hotspot VM 19.0 * Java VisualVM 1.3.1 * Menu Item Corrections for Right-to-Left Languages * Additional Languages Support in Linux Systems * Bug Fixes
2010-10-16Update Sun Java SE 6 to 1.6.0_22, a.k.a. 6.0.22.obache4-398/+282
[Changes in 1.6.0_22 (6u22)] http://www.oracle.com/technetwork/java/javase/6u22releasenotes-176121.html * OlsonData 2010l * Root Certificates Added new Entrust Root CA-G2 and updated Entrust.net CA (2048) root certificates. (Refer to 6959911.) * Bug Fixes This release contains fixes for security vulnerabilities. For more information, please see Oracle Java SE and Java for Business Critical Patch Update advisory. http://www.oracle.com/technetwork/topics/security/javacpuoct2010-176258.html [Changes in 1.6.0_21 (6u21)] http://www.oracle.com/technetwork/java/javase/6u21-156341.html * OlsonData 2010i
2010-06-06Update sun-{jre,jdk}6 to 6.0.20, aka 1.6.0_20.obache3-230/+544
Changes in 1.6.0_20 (6u20) * OlsonData 2010b * A Java Network Launch Protocol (JNLP) file without a codebase parameter, such as the following, will no longer work with the Java SE 6 update 20 release. <jnlp spec="0.2 1.0" href="draw.jnlp"> This means that developers must specify the codebase parameter in a JNLP file. See the following example: <jnlp spec="0.2 1.0" codebase="http://java.sun.com/javase/technologies/desktop/javawebstart/apps/" href="draw.jnlp"> * This release contains fixes for security vulnerabilities. For more information, please see Oracle Security Alert for CVE-2010-0886 Changes in 1.6.0_19 (6u19) * OlsonData 2010b * Root Certificates * Ensuring Application and Applet Security when Mixing Signed and Unsigned Code * Interim Fix for the Transport Layer Security (TLS) Man-in-the-Middle Attack * Bug Fixes Changes in 1.6.0_18 (6u18) * OlsonData 2009s * VisualVM 1.2 * Java DB 10.5.3.0 * Performance Improvements * Deployment Updates * JSR-173 StAX 1.2 API Upgrade * Bug Fixes
2009-11-22Updated lang/sun-jdk6 to 6.0.17abs2-10/+8
6u17 contains Olson time zone data version 2009m. For more information, refer to Timezone Data Versions in the JRE Software . Security Baseline 6u17 specifies the following security baselines for use with Java Plug-in technology: JRE Family Version Java SE Security Baseline Java SE for Business Security Baseline 6 1.6.0_17 1.6.0_17 5.0 1.5.0_22 1.5.0_22 1.4.2 1.4.2_19 1.4.2_24 Root Certificates Root Certificates are included in this release. * Added one new root certificate for SECOM. (Refer to 6872579.) * Added one new root certificate for GlobalSign. (Refer to 6860447.) Bug Fixes This release contains fixes for one or more security vulnerabilities. For more information, please see Sun Alerts 269868, 269869, 269870, 270474, 270475, and 270476. Bug fixes for vulnerabilities are listed in the following table. BugId Category Subcategory Description 6631533 java classes_2d ICC_Profile allows detecting if some files exist 6815780 java classes_2d TrueType font parsing crash when stressing Sun Bug 6751322 test case 6822057 java classes_2d X11 and Win32GraphicsDevice don't clone arrays returned from getConfigurations() 6862969 java classes_2d JPEG JFIF Decoder issue 6862970 java classes_2d Image Color Profile parsing issue 6872357 java classes_2d JRE AWT setDifflCM vulnerable to Stack Overflow 6872358 java classes_2d JRE AWT setBytePixels vulnerable to Heap Overflow 6664512 java classes_awt Component and [Default]KeyboardFocusManager pass security sensitive objects to loggers 6636650 java classes_lang (cl) Resurrected ClassLoaders can still have children 6861062 java classes_security Disable MD2 in certificate chain validation 6863503 java classes_security SECURITY: MessageDigest.isEqual introduces timing attack vulnerabilities 6864911 java classes_security ASN.1/DER input stream parser needs more work 6854303 java classes_sound Sun Java HsbParser.getSoundBank Stack Buffer Overflow Vulnerability 6657026 java classes_swing Numerous static security flaws in Swing (findbugs) 6657138 java classes_swing Mutable statics in Windows PL&F (findbugs) 6824265 java classes_util_i18n (tz) TimeZone.getTimeZone allows probing local filesystem 6632445 java imageio DoS from parsing BMPs with UNC ICC links 6862968 java imageio JPEG Image Writer quantization problem 6874643 java imageio ImageI/O JPEG is vulnerable to Heap Overflow 6869694 java install java update malfunctioning 6869752 java_deployment deployment_toolkit Deployment Toolkit plugin "launch" method vulnerable to exploits 6872824 javawebstart general arbitary code execution using java web start 6870531 javawebstart other REGRESSION:have problem to run JNLP app and applets with signed Jar files Other bug fixes are listed in the following table. BugId Category Subcategory Description 6842999 hotspot runtime_system Update hotspot windows os_win32 for windows 2008 R2 6804454 java classes_2d RFE: Provide a way to control the printing dpi resolution from MSIE browser print. See also 6801859 6813208 java classes_awt pageDialog throws NPE from applet 6825342 java classes_awt Security warning may change Z-order of top-level 6843003 java classes_lang Windows Server 2008 R2 system recognition 6860447 java classes_security Add GlobalSign R3 Root certificate to the JDK 6872579 java classes_security Add SECOM Root CA 2 to JDK 6880110 java classes_util_i18n (tz) Support tzdata2009m 6814140 java classes_util_logging deadlock due to synchronized demandLogger() code that locks ServerLogManager 6879614 jaxp parse com.sun.org.apache.xerces.internal.jaxp.DocumentBuilderImpl failing to parse xml document
2009-08-22Updated lang/sun-jdk6 to 6.0.16abs3-10/+22
Changes in 1.6.0_16 (6u16) 6u16 contains Olson time zone data version 2009i. Bug Fixes 6862295 hotspot jvmti JDWP threadid changes during debugging session (leading to ignored breakpoints) Changes in 1.6.0_15 (6u15) Root Certificates Root Certificates are included in this release. * Added one new root certificate and removed 3 root certificates from Entrust. (Refer to 6805338.) * Added three new root certificates from Keynectis. (Refer to 6845457.) * Added three new root certificates from Quovadis. (Refer to 6846473.) Blacklist Entries This update release includes the following new entry to the Blacklist: * JNLPAppletLauncher (See Sun Alert 263490 .) Note: Users should install JDK and JRE 6 Update 15 or later on systems running JDK and JRE 5.0 and SDK and JRE 1.4.2 to take advantage of this blacklist feature. For more information see the Blacklist Jar Feature section in the 6u14 Release Notes. Debug Issue Java ™ Virtual Machine Tool Interface (JVM TI) breakpoints are reliable only when either the Parallel Scavenge garbage collector (-XX:+UseParallelGC) or the Parallel Compacting garbage collector (-XX:+UseParallelOldGC) is used. When other collectors are used, breakpoints may stop functioning, and JVM TI object tags may become unusable after a full GC operation is performed. Java ™ Debug Interface (JDI) ThreadReferences have an embedded thread ID that depends on JVM TI object tags, thus the embedded thread ID may change unexpectedly. This may cause confusion in thread based JDI events. Note that the Serial garbage collector (-XX:+UseSerialGC) is vulnerable to this problem and is selected by default on some platforms. The work around is to explicitly select the Parallel Scavenge collector using the command line option -XX:+UseParallelGC. (Refer to 6862295.) Bug Fixes This release contains fixes for one or more security vulnerabilities. For more information, please see Sun Alerts 263408 , 263409 , 263428 , 263429 , 263488 , 263489 , and 264648. Bug fixes for vulnerabilities are listed in the following table. BugId Category Subcategory Description 6656610 java accessibility AccessibleResourceBundle.getContents exposes mutable static (findbugs) 6656586 java classes_awt Cursor.predefined is protected static mutable (findbugs) 6805231 java classes_awt Security Warning Icon is missing in Windows 2000 Prof from Jdk build 6u12 6818787 java classes_awt It is possible to reposition the security icon too far from the border of the window on X11 6823373 java classes_awt [ZDI-CAN-460] Java Web Start JPEG header parsing needs more scruity 6660539 java classes_beans Introspector cache mutable static 6777487 java classes_beans Encoder allows reading private variables with certain names 6801071 java classes_net Remote sites can compromise user privacy and possibly hijack web session 6801497 java classes_net Proxy is assumed to be immutable but is non-final 6657695 java classes_security AbstractSaslImpl.logger is a static mutable (findbugs) 6824440 java classes_security XML Signature HMAC issue 6657625 java classes_sound RmfFileReader/StandardMidiFileWriter.types are public mutable statics (findbugs) 6738524 java classes_sound JDK13Services allows read access to system properties from untrusted code 6777448 java classes_sound JDK13Services.getProviders creates instances with full privileges 6588003 java classes_swing LayoutQueue mutable statics 6660049 java classes_swing Synth Region.uiToRegionMap/lowerCaseNameMap are mutable statics 6849518 java classes_swing NPE is thrown in jemmy library since 6u15 b01 at javax.swing.plaf.synth.SynthContext.isSubregion() 6656625 java imageio ImageReaderSpi.STANDARD_INPUT_TYPE/ImageWriterSpi.STANDARD_OUTPUT_TYPE are mutable static (findbugs) 6657133 java imageio Mutable statics in imageio plugins (findbugs) 6830335 java jar Java JAR Pack200 Decompression Integer Overflow Vulnerability 6755840 java_plugin plugin Version selection allows old zip and certificate handling to be exploited 6848964 javawebstart general TCK jnlp test jnlp_file/appletDesc/index.html#misc fails with NPE starting 6u15 b01 6862844 javawebstart other java web start ActiveX control security problem caused by ATL PROP_ENTRY macro 6845701 jaxp parse Xerces2 Java XML library infinite loop with malformed XML input 6813167 jax-ws other 6u14 JAX-WS audit mutable static bugs 6736293 jmx classes OpenType checks can be bypassed through finalizer resurrection 6657619 jndi dns DnsContext.debug is public static mutable (findbugs) Other bug fixes are listed in the following table. BugId Category Subcategory Description 6786503 hotspot garbage_collector Overflow list performance can be improved 6787254 hotspot garbage_collector Work queue capacity can be increased substantially on some platforms 6805338 java classes_security Add 1 new Entrust root CA cert and remove 3 others with 1024 bit keys 6845457 java classes_security Add root certs for Keynectis CA 6846473 java classes_security Add QuoVadis root CA certs to the JRE 6848984 java classes_util_i18n (tz) Support tzdata2009i 6851214 java classes_util_i18n (tz) New Jordan rule creates a failure for SimpleTimeZone parsing post tzdata2009h 6845077 java install silent JDK should install JRE/Java DB silently 6846531 javawebstart other REGRESSION application from ocie.net does not work with 6.0_14 6461727 jce pkcs11_csp TripleDES KeyGenerators in SunPKCS11 and SunJCE do not agree on key length
2009-06-14Replace @exec/@unexec with @pkgdir or drop it.joerg1-2/+2
2009-06-14Remove @dirrm entries from PLISTsjoerg1-520/+1
2009-06-02update to u14christos3-214/+200
2009-05-19Use standard location for LICENSE line (in MAINTAINER/HOMEPAGE/COMMENTwiz1-2/+3
block). Uncomment some commented out LICENSE lines while here.
2009-03-20Simply and speed up buildlink3.mk files and processing.joerg1-15/+6
This changes the buildlink3.mk files to use an include guard for the recursive include. The use of BUILDLINK_DEPTH, BUILDLINK_DEPENDS, BUILDLINK_PACKAGES and BUILDLINK_ORDER is handled by a single new variable BUILDLINK_TREE. Each buildlink3.mk file adds a pair of enter/exit marker, which can be used to reconstruct the tree and to determine first level includes. Avoiding := for large variables (BUILDLINK_ORDER) speeds up parse time as += has linear complexity. The include guard reduces system time by avoiding reading files over and over again. For complex packages this reduces both %user and %sys time to half of the former time.
2009-03-06More pkglintabs2-4/+3
2009-03-03MAKE_JOBS_SAFE=noabs1-1/+2
2009-02-20Fix PR40090 - remove optionally generated register*.html files in pre-installabs1-1/+7
2009-02-08welcome to update 12christos2-9/+9
2009-01-18welcome to 6u11christos3-75/+441
2008-11-11Bump revisions of sun-jre6 and sun-jdk6 as suggested by joergreinoud1-1/+2
2008-11-11Add three missing files in the PLIST; not worthy a patch bump. Aparently Sunreinoud1-1/+4
decided to add files to the distribution.
2008-10-25Remove the Darwin specific hacks in this so it can detect Java on otheradrianp1-5/+8
OSes as well (e.g. OpenSolaris).
2008-10-24Add support for builtin Java 1.6 on Darwin 9.*adrianp1-0/+61
2008-03-05Update to Java 6.0 Update 5. Security update that fixes multiple recentlytnn2-9/+12
reported vulnerabilities. * http://java.sun.com/javase/6/webnotes/ReleaseNotes.html#160_05
2008-01-20Keep sun-jre6 and sun-jdk6 versions in sync. Noted by veego@tnn1-3/+2
2008-01-20Update lang/sun-jre6 to 6.0.3 and lang/sun-jdk6 to 6.0.4.tnn5-17/+1374
Please see the release notes online[1] for the list of fixed bugs. Also, the license was wrong. There are several differences in all clauses between the 1.3 and 6 licenses, so add the proper license files. [1] http://java.sun.com/javase/6/webnotes/ReleaseNotes.html
2007-08-22Don't bother stating that we need COMPAT_LINUX, as the packages wejlam1-22/+0
depend upon to supply the Linux shared libraries already tell the user this. The JDK packages also depend on the corresponding JRE package, so they don't need to show the same message -- keep the message with the JRE packages instead.
2007-08-22Fix error that happened during conversion to the emulator framework:jlam1-1/+2
the Sun JDK/JRE packages require the "compat" Linux module, so make that a hard requirement in EMUL_MODULES.linux. Bump the PKGREVISION for sun-{jdk,jre}{13,14,15,6}.
2007-07-29* Add new emulator framework in pkgsrc/mk/emulator that handles alljlam1-4/+5
binary-only packages that require binary "emulation" on the native operating system. Please see pkgsrc/mk/emulator/README for more details. * Teach the plist framework to automatically use any existing PLIST.${EMUL_PLATFORM} as part of the default PLIST_SRC definition. * Convert all of the binary-only packages in pkgsrc to use the emulator framework. Most of them have been tested to install and deinstall correctly. This involves the following cleanup actions: * Remove use of custom PLIST code and use PLIST.${EMUL_PLATFORM} more consistently. * Simplify packages by using default INSTALL and DEINSTALL scripts instead of custom INSTALL/DEINSTALL code. * Remove "SUSE_COMPAT32" and "PKG_OPTIONS.suse" from pkgsrc. Packages only need to state exactly which emulations they support, and the framework handles any i386-on-x86_64 or sparc-on-sparc64 uses. * Remove "USE_NATIVE_LINUX" from pkgsrc. The framework will automatically detect when the package is installing on Linux. Specific changes to packages include: * Bump the PKGREVISIONs for all of the suse100* and suse91* packages due to changes in the +INSTALL/+DEINSTALL scripts used in all of the packages. * Remove pkgsrc/emulators/suse_linux, which is unused by any packages. * cad/lc -- remove custom code to create the distinfo file for all supported platforms; just use "emul-fetch" and "emul-distinfo" instead. * lang/Cg-compiler -- install the shared libraries under ${EMULDIR} instead of ${PREFIX}/lib so that compiled programs will find the shared libraries. * mail/thunderbird-bin-nightly -- update to latest binary distributions for supported platforms. * multimedia/ns-flash -- update Linux version to 9.0.48 as the older version is no longer available for interactive fetch. * security/uvscan -- set LD_LIBRARY_PATH explicitly so that it's not necessary to install library symlinks into ${EMULDIR}/usr/local/lib. * www/firefox-bin-flash -- update Linux version to 9.0.48 as the older version is no longer available for interactive fetch.
2007-05-25Replace sun15 with sun6 to match reality.rh1-17/+17
2007-05-04Fix package name to reflect update to 6u1.markd1-2/+2
2007-04-26Update to 6u1; fixes PR pkg/36181.tv2-7/+8
Give away to pkgsrc-users.
2007-02-18SUN JRE/JDK 6.0. The new naming convention is that "1.6.0" is now "6.0"tv7-0/+2609
(true for 1.5, but officially branded as such for 6), so this is called "sun-j{dk,re}6" rather than "sun-j{dk,re}16". amd64 support is not currently included, but initial provision exists in the sun-jre6 package as it was cloned initially from sun-jre15.