Wed, 08 Jul 2009 14:24:20 -0700 asaha Merge
Wed, 08 Jul 2009 16:57:40 -0400 mullan 6858484: If an invalid HMAC XML Signature is validated, all subsequent valid HMAC signatures are invalid
Mon, 06 Jul 2009 11:42:37 -0700 asaha Merge
Wed, 01 Jul 2009 09:59:16 -0700 asaha Merge
Mon, 22 Jun 2009 07:23:20 -0700 ksrini 6830335: Java JAR Pack200 Decompression Integer Overflow Vulnerability
Tue, 23 Jun 2009 13:54:36 -0400 mullan 6824440: XML Signature HMAC issue
Mon, 22 Jun 2009 13:36:37 -0700 asaha 6656610: AccessibleResourceBundle.getContents exposes mutable static (findbugs)
Thu, 18 Jun 2009 22:53:54 -0700 asaha Merge
Thu, 18 Jun 2009 22:45:16 -0700 asaha Merge
Wed, 17 Jun 2009 13:12:42 -0700 asaha Merge
Thu, 18 Jun 2009 14:08:07 +0400 malenkov 6660049: Synth Region.uiToRegionMap/lowerCaseNameMap are mutable statics
Fri, 12 Jun 2009 12:26:20 -0700 asaha Merge
Fri, 12 Jun 2009 10:54:48 -0700 asaha Merge
Thu, 07 May 2009 13:18:12 -0700 asaha Merge
Wed, 13 May 2009 14:32:33 +0400 amenkov 6777448: JDK13Services.getProviders creates instances with full privileges [hawtin, alexp]
Wed, 13 May 2009 14:32:14 +0400 amenkov 6738524: JDK13Services allows read access to system properties from untrusted code
Wed, 13 May 2009 13:52:52 +0400 amenkov 6657625: RmfFileReader/StandardMidiFileWriter.types are public mutable statics (findbugs)
Tue, 12 May 2009 16:32:34 +0100 chegar 6801071: Remote sites can compromise user privacy and possibly hijack web sessions
Fri, 08 May 2009 16:15:15 +0400 bae 6823373: [ZDI-CAN-460] Java Web Start JPEG header parsing needs more scruity
Fri, 08 May 2009 15:57:33 +0400 bae 6657133: Mutable statics in imageio plugins (findbugs)
Fri, 08 May 2009 15:38:21 +0400 bae 6656625: ImageReaderSpi.STANDARD_INPUT_TYPE/ImageWriterSpi.STANDARD_OUTPUT_TYPE are mutable static (findbugs)
Thu, 07 May 2009 10:44:45 +0200 emcmanus 6736293: OpenType checks can be bypassed through finalizer resurrection
Wed, 06 May 2009 15:17:22 +0400 art 6656586: Cursor.predefined is protected static mutable (findbugs)
Tue, 05 May 2009 17:56:31 +0400 anthony 6818787: It is possible to reposition the security icon too far from the border of the window on X11
Tue, 05 May 2009 17:47:04 +0400 anthony 6805231: Security Warning Icon is missing in Windows 2000 Prof from Jdk build 6u12
Tue, 05 May 2009 11:02:51 +0200 jccollet 6801497: Proxy is assumed to be immutable but is non-final
Tue, 05 May 2009 12:07:37 +0400 peterz 6837293: Reapply fix for 6588003 to JDK7
Wed, 29 Apr 2009 11:43:19 -0700 asaha Merge
Wed, 29 Apr 2009 20:55:13 +0400 malenkov 6777487: Encoder allows reading private variables with certain names
Wed, 29 Apr 2009 20:03:09 +0400 malenkov 6660539: Introspector shares cache of mutable BeanInfo between AppContexts.
(0) -3000 -1000 -300 -100 -50 -30 +30 +50 +100 +300 +1000 +3000 +10000 +30000 tip