For Oracle Critical Patch Update Advisory

2016-04-24 Thread leo yang
For Oracle, a Critical Patch Update (CPU) is a collection of patches for multiple security vulnerabilities. And they will be released every three months. For OpenJDK, whether they will be updated accordingly. we want to update OpenJDK about security in time, so I need to your help that if you updat

Re: [PATCH] jdk7u95-b00 retro-active security patch review

2016-01-31 Thread leo yang
Thanks 2016-01-29 21:32 GMT+08:00 Andrew Hughes : > > > - Original Message - > > On 27/01/16 23:23, Andrew Hughes wrote: > > > Once approved, I'll push these to the OpenJDK 7 repository. > > > > Great, thanks. > > > > Andrew. > > > > > > Done. > > Thanks, > -- > Andrew :) > > Senior Free

Confirm whether to fix the security issues for Oracle Java SE

2015-12-21 Thread leo yang
I see the following website for Oracle “ http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html#AppendixJAVA ”, which contains 25 new security fixes for Oracle Java SE. And 24 of these vulnerabilities may be remotely exploitable without authentication. But I'm not sure whether th