<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="c75f99d8e875876c1432cb28ca2d13b0"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="slesp2-java-1_4_2-ibm-5465"
    timestamp="1216733138"
    engine="1.0">
  <yum:name>slesp2-java-1_4_2-ibm</yum:name>
  <summary lang="en">Security update for IBM Java 1.4.2</summary>
  <summary lang="de">Security update for IBM Java 1.4.2</summary>
  <description lang="en">This update of IBM Java to 1.4.2 SR11 fixes various
security problems:
* CVE-2008-1196: Stack-based buffer overflow in Java Web
  Start (javaws.exe) allows remote attackers to execute
  arbitrary code via a crafted JNLP file.
* CVE-2008-1187: Unspecified vulnerability in the Java
  Runtime Environment (JRE) allows remote attackers to
  cause a denial of service (JRE crash) and possibly
  execute arbitrary code via unknown vectors related to
  XSLT transforms.
* CVE-2007-5240: Visual truncation vulnerability in the
  Java Runtime Environment allows remote attackers to
  circumvent display of the untrusted-code warning banner
  by creating a window larger than the workstation screen.
</description>
  <description lang="de">This update of IBM Java to 1.4.2 SR11 fixes various
security problems:
* CVE-2008-1196: Stack-based buffer overflow in Java Web
  Start (javaws.exe) allows remote attackers to execute
  arbitrary code via a crafted JNLP file.
* CVE-2008-1187: Unspecified vulnerability in the Java
  Runtime Environment (JRE) allows remote attackers to
  cause a denial of service (JRE crash) and possibly
  execute arbitrary code via unknown vectors related to
  XSLT transforms.
* CVE-2007-5240: Visual truncation vulnerability in the
  Java Runtime Environment allows remote attackers to
  circumvent display of the untrusted-code warning banner
  by creating a window larger than the workstation screen.
</description>
  <yum:version ver="5465" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="java-1_4_2-ibm" epoch="0" ver="1.4.2_sr11" rel="0.6" flags="EQ"/>
    <rpm:entry kind="atom" name="java-1_4_2-ibm-devel" epoch="0" ver="1.4.2_sr11" rel="0.6" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>java-1_4_2-ibm</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="1.4.2_sr11" rel="0.6"/>
      <checksum type="sha" pkgid="YES">75849cd416b36a5d046ac5631765c15f2a3e3dd5</checksum>
      <time file="1216767207" build="1216733138"/>
      <size package="42834918" installed="67733408" archive="67443016"/>
      <location xml:base="media://#1" href="suse/x86_64/java-1_4_2-ibm-1.4.2_sr13-0.4.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="java-1_4_2-ibm" epoch="0" ver="1.4.2_sr11" rel="0.6" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="java-1_4_2-ibm"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>java-1_4_2-ibm-devel</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="1.4.2_sr11" rel="0.6"/>
      <checksum type="sha" pkgid="YES">a3024113821f32434914acab55887e20222b46ec</checksum>
      <time file="1216767208" build="1216733138"/>
      <size package="2424891" installed="3477219" archive="3486780"/>
      <location xml:base="media://#1" href="suse/x86_64/java-1_4_2-ibm-devel-1.4.2_sr13-0.4.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="java-1_4_2-ibm-devel" epoch="0" ver="1.4.2_sr11" rel="0.6" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="java-1_4_2-ibm-devel"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
  </atoms>
</patch>
