From patchwork Mon Jul 29 07:37:20 2019 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Peter Korsgaard X-Patchwork-Id: 1138210 Return-Path: X-Original-To: incoming-buildroot@patchwork.ozlabs.org Delivered-To: patchwork-incoming-buildroot@bilbo.ozlabs.org Authentication-Results: ozlabs.org; spf=pass (mailfrom) smtp.mailfrom=busybox.net (client-ip=140.211.166.137; helo=fraxinus.osuosl.org; envelope-from=buildroot-bounces@busybox.net; receiver=) Authentication-Results: ozlabs.org; dmarc=none (p=none dis=none) header.from=korsgaard.com Authentication-Results: ozlabs.org; dkim=fail reason="signature verification failed" (2048-bit key; unprotected) header.d=gmail.com header.i=@gmail.com header.b="eXuw0/2U"; dkim-atps=neutral Received: from fraxinus.osuosl.org (smtp4.osuosl.org [140.211.166.137]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ozlabs.org (Postfix) with ESMTPS id 45xs3J0P5Yz9sBt for ; Mon, 29 Jul 2019 17:37:31 +1000 (AEST) Received: from localhost (localhost [127.0.0.1]) by fraxinus.osuosl.org (Postfix) with ESMTP id 79AEA869F7; Mon, 29 Jul 2019 07:37:29 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Received: from fraxinus.osuosl.org ([127.0.0.1]) by localhost (.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id WnN15EVHtyEE; Mon, 29 Jul 2019 07:37:28 +0000 (UTC) Received: from ash.osuosl.org (ash.osuosl.org [140.211.166.34]) by fraxinus.osuosl.org (Postfix) with ESMTP id 6E9D786940; Mon, 29 Jul 2019 07:37:28 +0000 (UTC) X-Original-To: buildroot@lists.busybox.net Delivered-To: buildroot@osuosl.org Received: from whitealder.osuosl.org (smtp1.osuosl.org [140.211.166.138]) by ash.osuosl.org (Postfix) with ESMTP id 472551BF2AB for ; Mon, 29 Jul 2019 07:37:26 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by whitealder.osuosl.org (Postfix) with ESMTP id 435BA877D1 for ; Mon, 29 Jul 2019 07:37:26 +0000 (UTC) X-Virus-Scanned: amavisd-new at osuosl.org Received: from whitealder.osuosl.org ([127.0.0.1]) by localhost (.osuosl.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id JRU7oG5J9Pa3 for ; Mon, 29 Jul 2019 07:37:25 +0000 (UTC) X-Greylist: domain auto-whitelisted by SQLgrey-1.7.6 Received: from mail-ed1-f66.google.com (mail-ed1-f66.google.com [209.85.208.66]) by whitealder.osuosl.org (Postfix) with ESMTPS id EB9088777D for ; Mon, 29 Jul 2019 07:37:24 +0000 (UTC) Received: by mail-ed1-f66.google.com with SMTP id m10so58405137edv.6 for ; Mon, 29 Jul 2019 00:37:24 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=sender:from:to:cc:subject:date:message-id; bh=tYn7hywtWOXYmQbrhp0eXRtTgshvcXrJlPoPOTo/yg0=; b=eXuw0/2U76/DuRlBv0SBtUdBuMRT1lV362lrZT7Zr7ASEdKH7dxg03Fp8cMRY0Jn83 ZH5PFROdSZRxtIx/NZyKjkwG4bvb5Pc9c+SCROj9A/ZDa8gxte0j57a0t1wRL8qtGoAG mxsXfWAwZw0en/umwC2mQVuBr/P16gooCZdVXZdJLMxAzMUwIRWaCsEixPLZj+ODqu2p gxuqlRBH3qamuesBam8kahqX2qPegZnMSgPeim/CwY3CZxjSa+ou1TzNSPX+Wb6+JdtH D+8pjHUrTBFYmJmfjcjOa3VfKdNic6+jh4UHHFPnv1UE1A/TZLN45a4B7UQmWAP+1rFb amNA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:sender:from:to:cc:subject:date:message-id; bh=tYn7hywtWOXYmQbrhp0eXRtTgshvcXrJlPoPOTo/yg0=; b=sjXpdc+IAdS47tAUC2JODXH2EKNGGq6APZipP5WCPLIPtf7Oyb9FkUMly0C/X5APuN obYWYoCkN9v5gywf9XEj6Zw0KxQf+i/7cIUu9Za09X03O/Ri9CQ2cf3HdUZIPhTwazbF /W98MILVJFX6cSIaPGXmPYi4K32uDiQbPb16v8udWl2INho3U/DZ13pXKvO9eNaZm4Qg pRZQKYZYmlhnq/w6InBVNFByhLBo3ppaPr2VaPimjROPha477UGykYHkCeqkF1J64gFb oI3CnsZoYd6dUaZlHFKwvfpob3or4xT1Y8djMbeACNzM6zb75AXwOOZPhQQ3XbdEjQuh 2NiQ== X-Gm-Message-State: APjAAAUqqJ1Yp4DYc79da6JKR8rmKJY+Fb6sDx8o60THz78gA8snVt/r QejNV50Tx3eU6sBrQQf2iT2TqflL X-Google-Smtp-Source: APXvYqwNzsdKuv/tjFHcGLwLQZiFk71JyIKLdh1tVVx5T4HkwD92RJo3xqMmP4iJhzbAK+mtnjuOMA== X-Received: by 2002:a17:906:d052:: with SMTP id bo18mr76933973ejb.311.1564385842799; Mon, 29 Jul 2019 00:37:22 -0700 (PDT) Received: from dell.be.48ers.dk (d51a5bc31.access.telenet.be. [81.165.188.49]) by smtp.gmail.com with ESMTPSA id e24sm8117905ejb.53.2019.07.29.00.37.22 (version=TLS1_2 cipher=ECDHE-RSA-CHACHA20-POLY1305 bits=256/256); Mon, 29 Jul 2019 00:37:22 -0700 (PDT) Received: from peko by dell.be.48ers.dk with local (Exim 4.89) (envelope-from ) id 1hs0Dh-0004z7-CG; Mon, 29 Jul 2019 09:37:21 +0200 From: Peter Korsgaard To: buildroot@buildroot.org Date: Mon, 29 Jul 2019 09:37:20 +0200 Message-Id: <20190729073720.19116-1-peter@korsgaard.com> X-Mailer: git-send-email 2.11.0 Subject: [Buildroot] [PATCH] package/openjdk{, -bin}: security bump to version 12.0.2_10 X-BeenThere: buildroot@busybox.net X-Mailman-Version: 2.1.29 Precedence: list List-Id: Discussion and development of buildroot List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: Peter Korsgaard , Adam Duskett MIME-Version: 1.0 Errors-To: buildroot-bounces@busybox.net Sender: "buildroot" Fixes the following security issues: CVE-2019-7317 CVE-2019-2821 CVE-2019-2769 CVE-2019-2762 CVE-2019-2745 CVE-2019-2816 CVE-2019-2842 CVE-2019-2786 CVE-2019-2818 CVE-2019-2766 CVE-2019-6129 For details. see the advisory: https://openjdk.java.net/groups/vulnerability/advisories/2019-07-16 Signed-off-by: Peter Korsgaard --- package/openjdk-bin/openjdk-bin.hash | 2 +- package/openjdk-bin/openjdk-bin.mk | 4 ++-- package/openjdk/openjdk.hash | 2 +- package/openjdk/openjdk.mk | 4 ++-- 4 files changed, 6 insertions(+), 6 deletions(-) diff --git a/package/openjdk-bin/openjdk-bin.hash b/package/openjdk-bin/openjdk-bin.hash index 1fab6e07a8..dc0476ca2d 100644 --- a/package/openjdk-bin/openjdk-bin.hash +++ b/package/openjdk-bin/openjdk-bin.hash @@ -1,5 +1,5 @@ # From https://github.com/AdoptOpenJDK/openjdk12-binaries/releases -sha256 dd3fdf3771a05a010029c1cf1aef516928eab55d6f5eb019008875e9ccbc8337 OpenJDK12U-jdk_x64_linux_hotspot_12.0.1_12.tar.gz +sha256 1202f536984c28d68681d51207a84b6c76e5998579132d3fe1b8085aa6a5f21e OpenJDK12U-jdk_x64_linux_hotspot_12.0.2_10.tar.gz # Locally calculated sha256 4b9abebc4338048a7c2dc184e9f800deb349366bdf28eb23c2677a77b4c87726 legal/java.prefs/LICENSE diff --git a/package/openjdk-bin/openjdk-bin.mk b/package/openjdk-bin/openjdk-bin.mk index 383842d280..80b69b7a0e 100644 --- a/package/openjdk-bin/openjdk-bin.mk +++ b/package/openjdk-bin/openjdk-bin.mk @@ -4,8 +4,8 @@ # ################################################################################ -HOST_OPENJDK_BIN_VERSION_MAJOR = 12.0.1 -HOST_OPENJDK_BIN_VERSION_MINOR = 12 +HOST_OPENJDK_BIN_VERSION_MAJOR = 12.0.2 +HOST_OPENJDK_BIN_VERSION_MINOR = 10 HOST_OPENJDK_BIN_VERSION = $(HOST_OPENJDK_BIN_VERSION_MAJOR)_$(HOST_OPENJDK_BIN_VERSION_MINOR) HOST_OPENJDK_BIN_SOURCE = OpenJDK12U-jdk_x64_linux_hotspot_$(HOST_OPENJDK_BIN_VERSION).tar.gz HOST_OPENJDK_BIN_SITE = https://github.com/AdoptOpenJDK/openjdk12-binaries/releases/download/jdk-$(HOST_OPENJDK_BIN_VERSION_MAJOR)%2B$(HOST_OPENJDK_BIN_VERSION_MINOR) diff --git a/package/openjdk/openjdk.hash b/package/openjdk/openjdk.hash index f4eecf5dcd..00d080aa3f 100644 --- a/package/openjdk/openjdk.hash +++ b/package/openjdk/openjdk.hash @@ -1,3 +1,3 @@ # Locally computed -sha256 47cfd6d8430d862869c42c5841bbaaa303a811fea8229baa10ac03b58e259af2 openjdk-12.0.1+12.tar.gz +sha256 5f73d86ed516173965b27754f1bb21374ccb1194a17c2d89d8018280ce5ffa78 openjdk-12.0.2+10.tar.gz sha256 4b9abebc4338048a7c2dc184e9f800deb349366bdf28eb23c2677a77b4c87726 LICENSE diff --git a/package/openjdk/openjdk.mk b/package/openjdk/openjdk.mk index 2f3292ef6d..ea2555edcc 100644 --- a/package/openjdk/openjdk.mk +++ b/package/openjdk/openjdk.mk @@ -4,8 +4,8 @@ # ################################################################################ -OPENJDK_VERSION_MAJOR = 12.0.1 -OPENJDK_VERSION_MINOR = 12 +OPENJDK_VERSION_MAJOR = 12.0.2 +OPENJDK_VERSION_MINOR = 10 OPENJDK_VERSION = $(OPENJDK_VERSION_MAJOR)+$(OPENJDK_VERSION_MINOR) OPENJDK_SITE = $(call github,AdoptOpenJDK,openjdk-jdk12u,jdk-$(OPENJDK_VERSION)) OPENJDK_LICENSE = GPL-2.0+ with exception