<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="82cdeeaf145bab6cfd200feb8ad71d89"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="slesp3-java-1_4_2-ibm-6523"
    timestamp="1255531780"
    engine="1.0">
  <yum:name>slesp3-java-1_4_2-ibm</yum:name>
  <summary lang="en">Security update for IBM Java 1.4.2</summary>
  <summary lang="de">Security update for IBM Java 1.4.2</summary>
  <description lang="en">IBM Java 1.4.2 was updated to SR13 FP1.

It fixes following two security issues: CVE-2009-2625: A
vulnerability in the Java Runtime Environment (JRE) with
parsing XML data might allow a remote client to create a
denial-of-service condition on the system that the JRE runs
on.

CVE-2008-5349: A vulnerability in how the Java Runtime
Environment (JRE) handles certain RSA public keys might
cause the JRE to consume an excessive amount of CPU
resources. This might lead to a Denial of Service (DoS)
condition on affected systems. Such keys could be provided
by a remote client of an application.

This issue affects the following security providers:
IBMJCE, IBMPKCS11Impl and IBMJCEFIPS.
</description>
  <description lang="de">IBM Java 1.4.2 was updated to SR13 FP1.

It fixes following two security issues: CVE-2009-2625: A
vulnerability in the Java Runtime Environment (JRE) with
parsing XML data might allow a remote client to create a
denial-of-service condition on the system that the JRE runs
on.

CVE-2008-5349: A vulnerability in how the Java Runtime
Environment (JRE) handles certain RSA public keys might
cause the JRE to consume an excessive amount of CPU
resources. This might lead to a Denial of Service (DoS)
condition on affected systems. Such keys could be provided
by a remote client of an application.

This issue affects the following security providers:
IBMJCE, IBMPKCS11Impl and IBMJCEFIPS.
</description>
  <yum:version ver="6523" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="java-1_4_2-ibm" epoch="0" ver="1.4.2_sr13.1" rel="0.5.1" flags="EQ"/>
    <rpm:entry kind="atom" name="java-1_4_2-ibm-devel" epoch="0" ver="1.4.2_sr13.1" rel="0.5.1" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>java-1_4_2-ibm</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="1.4.2_sr13.1" rel="0.5.1"/>
      <checksum type="sha" pkgid="YES">d2f0e4f029df30355bc3978e76a83b33a0f792c1</checksum>
      <time file="1255531819" build="1255531780"/>
      <size package="38856666" installed="63677706" archive="63384852"/>
      <location xml:base="media://#1" href="suse/x86_64/java-1_4_2-ibm-1.4.2_sr13.1-0.5.1.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="java-1_4_2-ibm" epoch="0" ver="1.4.2_sr13.1" rel="0.5.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="java-1_4_2-ibm"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>java-1_4_2-ibm-devel</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="1.4.2_sr13.1" rel="0.5.1"/>
      <checksum type="sha" pkgid="YES">ecec33d8e81c3a16e0b525f9e81a265e9b967589</checksum>
      <time file="1255531820" build="1255531780"/>
      <size package="2425944" installed="3529483" archive="3538660"/>
      <location xml:base="media://#1" href="suse/x86_64/java-1_4_2-ibm-devel-1.4.2_sr13.1-0.5.1.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="java-1_4_2-ibm-devel" epoch="0" ver="1.4.2_sr13.1" rel="0.5.1" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="java-1_4_2-ibm-devel"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
      </pkgfiles>
    </package>
  </atoms>
</patch>
