← Back to team overview

openjdk team mailing list archive

[Bug 891761] Re: openjdk-6 6b23~pre11-0ubuntu1.11.10 breaks Raritan Dominion KVM console access

 

Hi James,

Do you have any idea how the console is connecting to the KVM? There's a
few different things in the update here that could be affecting it:

  - the fix for CVE-2011-3552 dropped the default number of allowed open UDP connections to 25
  - there were a couple of different issues around RMI where the restrictions were tightened (CVE-2011-3556, CVE-2011-3557)
  - the HttpsURLConnection class in some situations wasn't doing Security checks and thus was allowing connections that it shouldn't have been (CVE-2011-3560)

I can try to prepare some test packages with various fixes dropped to
see if we can isolate it.

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2011-3552

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2011-3556

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2011-3557

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2011-3560

** Changed in: openjdk-6 (Ubuntu)
       Status: New => Incomplete

** Changed in: openjdk-6 (Ubuntu)
   Importance: Undecided => Medium

-- 
You received this bug notification because you are a member of OpenJDK,
which is subscribed to openjdk-6 in Ubuntu.
https://bugs.launchpad.net/bugs/891761

Title:
  openjdk-6 6b23~pre11-0ubuntu1.11.10 breaks Raritan Dominion KVM
  console access

Status in “openjdk-6” package in Ubuntu:
  Incomplete

Bug description:
  I upgraded to the most recent openjdk-6 packages this morning; as a
  result the Java plugin based console access provided by Raritan
  Dominion KVM remote console access  no longer works - it fails with a
  'Client disconnect from remote console' error message.

  I confirmed this by reverting to the 6b23~pre10-0ubuntu5.

  I'll see if I can raise this with Raritan as well (but might not get
  far there).

  ProblemType: Bug
  DistroRelease: Ubuntu 11.10
  Package: openjdk-6-jdk 6b23~pre11-0ubuntu1.11.10
  ProcVersionSignature: Ubuntu 3.0.0-12.20-generic 3.0.4
  Uname: Linux 3.0.0-12-generic x86_64
  NonfreeKernelModules: fglrx
  ApportVersion: 1.23-0ubuntu4
  Architecture: amd64
  Date: Thu Nov 17 14:10:35 2011
  InstallationMedia: Ubuntu 11.04 "Natty Narwhal" - Release amd64 (20110426)
  SourcePackage: openjdk-6
  UpgradeStatus: Upgraded to oneiric on 2011-09-09 (69 days ago)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openjdk-6/+bug/891761/+subscriptions



References