Thu, 16 Apr 2009 21:08:04 -0700 asaha Merge
Tue, 10 Mar 2009 18:43:00 +0000 vinnie 6737315: LDAP serialized data vulnerability
Tue, 10 Mar 2009 14:29:47 +0100 dfuchs Merge
Mon, 09 Mar 2009 23:50:11 +0100 dfuchs 6721651: Security problem with out-of-the-box management
Tue, 10 Mar 2009 12:55:40 +0100 dfuchs Merge
Mon, 09 Mar 2009 22:49:21 +0100 dfuchs 6610896: JMX Monitor handles thread groups incorrectly
Tue, 10 Mar 2009 12:47:27 +0100 dfuchs Merge
Mon, 09 Mar 2009 22:34:08 +0100 dfuchs 6610888: Potential use of cleared of incorrect acc in JMX Monitor
Tue, 10 Mar 2009 12:36:55 +0100 dfuchs Merge
Mon, 09 Mar 2009 22:17:52 +0100 dfuchs 6691246: Thread context class loader can be set using JMX remote ClientNotifForwarded
Tue, 10 Mar 2009 12:28:00 +0100 dfuchs Merge
Mon, 09 Mar 2009 21:49:56 +0100 dfuchs 6656633: getNotificationInfo methods static mutable
Tue, 10 Mar 2009 03:18:22 -0700 michaelm 6630639: lightweight HttpServer leaks file descriptors on no-data connections
Fri, 06 Mar 2009 12:40:38 +0300 bae 6804997: JWS GIF Decoding Heap Corruption [V-r687oxuocp]
Thu, 05 Mar 2009 19:36:51 +0300 bae 6804998: JRE GIF Decoding Heap Corruption [V-y6g5jlm8e1]
Tue, 03 Mar 2009 16:10:37 -0800 prr 2163516: Font.createFont can be persuaded to leak temporary files
Fri, 20 Feb 2009 13:48:32 +0300 bae 6804996: JWS PNG Decoding Integer Overflow [V-flrhat2ln8]
Wed, 18 Feb 2009 14:14:03 -0800 ksrini 6792554: Java JAR Pack200 header checks are insufficent
Mon, 05 Jan 2009 11:28:43 -0800 prr 6632886: Font.createFont can be persuaded to leak temporary files
Tue, 30 Dec 2008 10:42:45 +0800 weijun 6717680: LdapCtx does not close the connection if initialization fails
Wed, 24 Dec 2008 15:48:59 -0800 prr 6652463: MediaSize constructors allow to redefine the mapping of standard MediaSizeName values
Wed, 03 Dec 2008 13:34:50 +0300 bae 6766136: corrupted gif image may cause crash in java splashscreen library.
Fri, 17 Oct 2008 09:43:30 -0700 ksrini 6755943: Java JAR Pack200 Decompression should enforce stricter header checks
Thu, 09 Oct 2008 21:12:56 +0100 alanb 6721753: File.createTempFile produces guessable file names
Thu, 02 Oct 2008 20:37:43 +0400 bae 6726779: ConvolveOp on USHORT raster can cause the JVM crash.
Thu, 02 Oct 2008 16:49:33 +0900 okutsu 6734167: Calendar.readObject allows elevation of privileges
Thu, 04 Sep 2008 09:43:32 -0700 ksrini 6733959: Insufficient checks for "Main-Class" manifest entry in JAR files
Wed, 01 Oct 2008 10:01:45 +0800 weijun 6588160: jaas krb5 client leaks OS-level UDP sockets (all platforms)
(0) -1000 -300 -100 -50 -28 +28 +50 +100 +300 +1000 +3000 +10000 +30000 tip