<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="d2f549cc040cd81ae4a268bb5edfe918"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="sledp1-java-1_4_2-sun-3844"
    timestamp="1183636966"
    engine="1.0">
  <yum:name>sledp1-java-1_4_2-sun</yum:name>
  <summary lang="en">Security update for Java</summary>
  <summary lang="de">Security update for Java</summary>
  <description lang="en">The Sun JAVA JDK 1.4.2 was upgraded to release 15 to fix
various bugs, including the following security bugs:

CVE-2007-2788 / CVE-2007-3004: Integer overflow in the
embedded ICC profile image parser in Sun Java Development
Kit (JDK), allows remote attackers to execute arbitrary
code or cause a denial of service (JVM crash) via a crafted
JPEG or BMP file.

CVE-2007-2789 / CVE-2007-3005: The BMP image parser in Sun
Java Development Kit (JDK), on Unix/Linux systems, allows
remote attackers to trigger the opening of arbitrary local
files via a crafted BMP file, which causes a denial of
service (system hang) in certain cases such as /dev/tty,
and has other unspecified impact.

CVE-2007-0243: Buffer overflow in Sun JDK and Java Runtime
Environment (JRE) allows applets to gain privileges via a
GIF image with a block with a 0 width field, which triggers
memory corruption.
</description>
  <description lang="de">The Sun JAVA JDK 1.4.2 was upgraded to release 15 to fix
various bugs, including the following security bugs:

CVE-2007-2788 / CVE-2007-3004: Integer overflow in the
embedded ICC profile image parser in Sun Java Development
Kit (JDK), allows remote attackers to execute arbitrary
code or cause a denial of service (JVM crash) via a crafted
JPEG or BMP file.

CVE-2007-2789 / CVE-2007-3005: The BMP image parser in Sun
Java Development Kit (JDK), on Unix/Linux systems, allows
remote attackers to trigger the opening of arbitrary local
files via a crafted BMP file, which causes a denial of
service (system hang) in certain cases such as /dev/tty,
and has other unspecified impact.

CVE-2007-0243: Buffer overflow in Sun JDK and Java Runtime
Environment (JRE) allows applets to gain privileges via a
GIF image with a block with a 0 width field, which triggers
memory corruption.
</description>
  <yum:version ver="3844" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="java-1_4_2-sun" epoch="0" ver="1.4.2.15" rel="2.1" flags="EQ"/>
    <rpm:entry kind="atom" name="java-1_4_2-sun-alsa" epoch="0" ver="1.4.2.15" rel="2.1" flags="EQ"/>
    <rpm:entry kind="atom" name="java-1_4_2-sun-demo" epoch="0" ver="1.4.2.15" rel="2.1" flags="EQ"/>
    <rpm:entry kind="atom" name="java-1_4_2-sun-devel" epoch="0" ver="1.4.2.15" rel="2.1" flags="EQ"/>
    <rpm:entry kind="atom" name="java-1_4_2-sun-jdbc" epoch="0" ver="1.4.2.15" rel="2.1" flags="EQ"/>
    <rpm:entry kind="atom" name="java-1_4_2-sun-plugin" epoch="0" ver="1.4.2.15" rel="2.1" flags="EQ"/>
    <rpm:entry kind="atom" name="java-1_4_2-sun-src" epoch="0" ver="1.4.2.15" rel="2.1" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>java-1_4_2-sun</name>
      <arch>i586</arch>
      <version epoch="0" ver="1.4.2.15" rel="2.1"/>
      <checksum type="sha" pkgid="YES">0b30262426179e8c3c2ec759b0ce4e5f6cc2cd2c</checksum>
      <time file="1183717740" build="1183636966"/>
      <size package="18784218" installed="59989161" archive="60114672"/>
      <location xml:base="media://#1" href="suse/i586/java-1_4_2-sun-1.4.2.17-0.2.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="java-1_4_2-sun" epoch="0" ver="1.4.2.15" rel="2.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="java-1_4_2-sun"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>java-1_4_2-sun-alsa</name>
      <arch>i586</arch>
      <version epoch="0" ver="1.4.2.15" rel="2.1"/>
      <checksum type="sha" pkgid="YES">8229149c3224ca89e4cb301c4e8d038471fd71b6</checksum>
      <time file="1183717740" build="1183636966"/>
      <size package="21807" installed="26584" archive="26888"/>
      <location xml:base="media://#1" href="suse/i586/java-1_4_2-sun-alsa-1.4.2.17-0.2.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="java-1_4_2-sun-alsa" epoch="0" ver="1.4.2.15" rel="2.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="java-1_4_2-sun-alsa"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>java-1_4_2-sun-demo</name>
      <arch>i586</arch>
      <version epoch="0" ver="1.4.2.15" rel="2.1"/>
      <checksum type="sha" pkgid="YES">d01dd29a169c83074608933112fa4ea69eb24eec</checksum>
      <time file="1183717741" build="1183636966"/>
      <size package="6318092" installed="9468096" archive="9650812"/>
      <location xml:base="media://#1" href="suse/i586/java-1_4_2-sun-demo-1.4.2.17-0.2.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="java-1_4_2-sun-demo" epoch="0" ver="1.4.2.15" rel="2.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="java-1_4_2-sun-demo"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>java-1_4_2-sun-devel</name>
      <arch>i586</arch>
      <version epoch="0" ver="1.4.2.15" rel="2.1"/>
      <checksum type="sha" pkgid="YES">aa04b9801f73cec7ea2f97a86dc3d6d70100a824</checksum>
      <time file="1183717741" build="1183636966"/>
      <size package="2906828" installed="8021647" archive="8032060"/>
      <location xml:base="media://#1" href="suse/i586/java-1_4_2-sun-devel-1.4.2.17-0.2.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="java-1_4_2-sun-devel" epoch="0" ver="1.4.2.15" rel="2.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="java-1_4_2-sun-devel"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>java-1_4_2-sun-jdbc</name>
      <arch>i586</arch>
      <version epoch="0" ver="1.4.2.15" rel="2.1"/>
      <checksum type="sha" pkgid="YES">d7405f0cb62faa00adc49e3f9b87fc82ef9a886a</checksum>
      <time file="1183717741" build="1183636966"/>
      <size package="24073" installed="50016" archive="50316"/>
      <location xml:base="media://#1" href="suse/i586/java-1_4_2-sun-jdbc-1.4.2.17-0.2.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="java-1_4_2-sun-jdbc" epoch="0" ver="1.4.2.15" rel="2.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="java-1_4_2-sun-jdbc"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>java-1_4_2-sun-plugin</name>
      <arch>i586</arch>
      <version epoch="0" ver="1.4.2.15" rel="2.1"/>
      <checksum type="sha" pkgid="YES">24812cbad7be8a1882f2c3c405465bf83eff383f</checksum>
      <time file="1183717741" build="1183636966"/>
      <size package="796464" installed="2638599" archive="2644460"/>
      <location xml:base="media://#1" href="suse/i586/java-1_4_2-sun-plugin-1.4.2.17-0.2.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="java-1_4_2-sun-plugin" epoch="0" ver="1.4.2.15" rel="2.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="java-1_4_2-sun-plugin"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>java-1_4_2-sun-src</name>
      <arch>i586</arch>
      <version epoch="0" ver="1.4.2.15" rel="2.1"/>
      <checksum type="sha" pkgid="YES">0fc6c9e2dcc322921a58f79a966db0a72fffe4e8</checksum>
      <time file="1183717743" build="1183636966"/>
      <size package="10945815" installed="11521827" archive="11522108"/>
      <location xml:base="media://#1" href="suse/i586/java-1_4_2-sun-src-1.4.2.17-0.2.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="java-1_4_2-sun-src" epoch="0" ver="1.4.2.15" rel="2.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="java-1_4_2-sun-src"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
  </atoms>
</patch>
