openjdk team mailing list archive
-
openjdk team
-
Mailing list archive
-
Message #06844
[Bug 891761] Re: openjdk-6 6b23~pre11-0ubuntu1.11.10 breaks Raritan Dominion KVM console access
Hi James,
Do you have any idea how the console is connecting to the KVM? There's a
few different things in the update here that could be affecting it:
- the fix for CVE-2011-3552 dropped the default number of allowed open UDP connections to 25
- there were a couple of different issues around RMI where the restrictions were tightened (CVE-2011-3556, CVE-2011-3557)
- the HttpsURLConnection class in some situations wasn't doing Security checks and thus was allowing connections that it shouldn't have been (CVE-2011-3560)
I can try to prepare some test packages with various fixes dropped to
see if we can isolate it.
** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2011-3552
** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2011-3556
** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2011-3557
** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2011-3560
** Changed in: openjdk-6 (Ubuntu)
Status: New => Incomplete
** Changed in: openjdk-6 (Ubuntu)
Importance: Undecided => Medium
--
You received this bug notification because you are a member of OpenJDK,
which is subscribed to openjdk-6 in Ubuntu.
https://bugs.launchpad.net/bugs/891761
Title:
openjdk-6 6b23~pre11-0ubuntu1.11.10 breaks Raritan Dominion KVM
console access
Status in “openjdk-6” package in Ubuntu:
Incomplete
Bug description:
I upgraded to the most recent openjdk-6 packages this morning; as a
result the Java plugin based console access provided by Raritan
Dominion KVM remote console access no longer works - it fails with a
'Client disconnect from remote console' error message.
I confirmed this by reverting to the 6b23~pre10-0ubuntu5.
I'll see if I can raise this with Raritan as well (but might not get
far there).
ProblemType: Bug
DistroRelease: Ubuntu 11.10
Package: openjdk-6-jdk 6b23~pre11-0ubuntu1.11.10
ProcVersionSignature: Ubuntu 3.0.0-12.20-generic 3.0.4
Uname: Linux 3.0.0-12-generic x86_64
NonfreeKernelModules: fglrx
ApportVersion: 1.23-0ubuntu4
Architecture: amd64
Date: Thu Nov 17 14:10:35 2011
InstallationMedia: Ubuntu 11.04 "Natty Narwhal" - Release amd64 (20110426)
SourcePackage: openjdk-6
UpgradeStatus: Upgraded to oneiric on 2011-09-09 (69 days ago)
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openjdk-6/+bug/891761/+subscriptions
References