Bug#870860: openjfx: CVE-2017-10086 CVE-2017-10114

2017-10-17 Thread Markus Koschany
Am 17.10.2017 um 17:20 schrieb Moritz Muehlenhoff: > On Tue, Oct 17, 2017 at 04:30:16PM +0200, Emmanuel Bourg wrote: >> I ran the Oracle JavaFX demos with the new version and it worked fine >> (except the media player but this isn't a regression, something is >> probably misconfigured on my

Bug#870860: openjfx: CVE-2017-10086 CVE-2017-10114

2017-10-17 Thread Moritz Muehlenhoff
On Tue, Oct 17, 2017 at 04:30:16PM +0200, Emmanuel Bourg wrote: > I ran the Oracle JavaFX demos with the new version and it worked fine > (except the media player but this isn't a regression, something is > probably misconfigured on my machine). > > Should I proceed with the upload, or do you

Bug#870860: openjfx: CVE-2017-10086 CVE-2017-10114

2017-10-17 Thread Emmanuel Bourg
I ran the Oracle JavaFX demos with the new version and it worked fine (except the media player but this isn't a regression, something is probably misconfigured on my machine). Should I proceed with the upload, or do you want to do it directly? Emmanuel Bourg

Bug#870860: openjfx: CVE-2017-10086 CVE-2017-10114

2017-10-06 Thread Moritz Muehlenhoff
On Fri, Oct 06, 2017 at 04:27:02PM +0200, Emmanuel Bourg wrote: > Hi, > > Quick update on openjfx: the package is back on track, as of version > 8u141-b14-3 I eventually managed to get it to build on both amd64 and > i386 in unstable for the first time since January. If the tests go well > I'll

Bug#870860: openjfx: CVE-2017-10086 CVE-2017-10114

2017-10-06 Thread Emmanuel Bourg
Hi, Quick update on openjfx: the package is back on track, as of version 8u141-b14-3 I eventually managed to get it to build on both amd64 and i386 in unstable for the first time since January. If the tests go well I'll prepare the security update next week. Emmanuel Bourg

Bug#870860: openjfx: CVE-2017-10086 CVE-2017-10114

2017-10-02 Thread Moritz Mühlenhoff
On Mon, Oct 02, 2017 at 05:09:29PM +0200, Emmanuel Bourg wrote: > Le 2/10/2017 à 15:08, Moritz Muehlenhoff a écrit : > > > Java maintainers, shall we follow the procedures for openjdk and > > rebase to a new upstream release in stretch? > > Yes please, that's the only sustainable solution for

Bug#870860: openjfx: CVE-2017-10086 CVE-2017-10114

2017-10-02 Thread Emmanuel Bourg
Le 2/10/2017 à 15:08, Moritz Muehlenhoff a écrit : > Java maintainers, shall we follow the procedures for openjdk and > rebase to a new upstream release in stretch? Yes please, that's the only sustainable solution for openjfx. I'll prepare the update for unstable first and I'll let you know when

Bug#870860: openjfx: CVE-2017-10086 CVE-2017-10114

2017-10-02 Thread Moritz Muehlenhoff
On Sat, Aug 05, 2017 at 09:58:53PM +0200, Salvatore Bonaccorso wrote: > Source: openjfx > Version: 8u131-b11-1 > Severity: grave > Tags: upstream security > > Hi, > > the following vulnerabilities were published for openjfx. > > CVE-2017-10086[0] and CVE-2017-10114[1]. > > Unfortunately it's

Bug#870860: openjfx: CVE-2017-10086 CVE-2017-10114

2017-08-05 Thread Salvatore Bonaccorso
Source: openjfx Version: 8u131-b11-1 Severity: grave Tags: upstream security Hi, the following vulnerabilities were published for openjfx. CVE-2017-10086[0] and CVE-2017-10114[1]. Unfortunately it's no more details possilby know as shared via [2], which states that the supported versions