This bug was fixed in the package icedtea-web - 1.2-2ubuntu1.1
---------------
icedtea-web (1.2-2ubuntu1.1) precise-security; urgency=low
* SECURITY UPDATE: uninitialized pointer use flaw
- debian/patches/icedtea-web-CVE-2012-3422.patch: check for empty
instance_to_id_map hash and return error if so.
- CVE-2012-3422
* SECURITY UPDATE: incorrect handling of non NULL terminated strings
- debian/patches/icedtea-web-CVE-2012-3423.patch: ensure NPVariant
NPStrings are NULL terminated.
- CVE-2012-3423
* debian/control, debian/control.common: add replaces on icedtea-net
and icedtea-6-plugin for conflicting files in older releases,
caused by icedtea-web security pocket backport to those releases
in conjunction with openjdk-6 security backport (LP: #1024708)
-- Steve Beattie <[email protected]> Fri, 27 Jul 2012 23:14:25 -0700
** Changed in: icedtea-web (Ubuntu)
Status: New => Fix Released
** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-3422
** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2012-3423
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1024708
Title:
package icedtea-plugin 1.2-2ubuntu1 failed to install/upgrade:
ErrorMessage: dependency problems - leaving unconfigured
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/icedtea-web/+bug/1024708/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs