+ Oracle JDK/JRE, IcedTea: Multiple vulnerabilities
+ Multiple vulnerabilities have been found in Oracle's JRE and JDK
+ software suites, and IcedTea, the worst of which may allow execution of
+ arbitrary code.
+
+ oracle-jdk-bin,oracle-jre-bin,icedtea-bin
+ 2017-09-24
+ 2017-09-24: 1
+ 625602
+ 626088
+ 627682
+ remote
+
+
+ 1.8.0.141
+ 1.8.0.141
+
+
+ 1.8.0.141
+ 1.8.0.141
+
+
+ 7.2.6.11
+ 3.5.0
+ 7.2.6.11
+ 3.5.0
+
+
+
+ Java Platform, Standard Edition (Java SE) lets you develop and deploy
+ Java applications on desktops and servers, as well as in today’s
+ demanding embedded environments. Java offers the rich user interface,
+ performance, versatility, portability, and security that today’s
+ applications require.
+
+
+ IcedTea’s aim is to provide OpenJDK in a form suitable for easy
+ configuration, compilation and distribution with the primary goal of
+ allowing inclusion in GNU/Linux distributions.
+
+
+
+
+ Multiple vulnerabilities have been discovered in Oracle’s JRE, JDK and
+ IcedTea. Please review the referenced CVE identifiers for details.
+
+
+
+
+ A remote attacker could possibly execute arbitrary code with the
+ privileges of the process, cause a Denial of Service condition, or gain
+ access to information.
+
+
+
+ There is no known workaround at this time.
+
+
+ All Oracle JDK binary users should upgrade to the latest version:
+
+
+ # emerge --sync
+ # emerge --ask --oneshot --verbose
+ ">=dev-java/oracle-jdk-bin-1.8.0.141"
+
+
+ All Oracle JRE binary users should upgrade to the latest version:
+
+
+ # emerge --sync
+ # emerge --ask --oneshot --verbose
+ ">=dev-java/oracle-jre-bin-1.8.0.141"
+
+
+ All IcedTea binary 7.x users should upgrade to the latest version:
+
+
+ # emerge --sync
+ # emerge --ask --oneshot --verbose ">=dev-java/icedtea-bin-7.2.6.11"
+
+
+ All IcedTea binary 3.x users should upgrade to the latest version:
+
+
+ # emerge --sync
+ # emerge --ask --oneshot --verbose ">=dev-java/icedtea-bin-3.5.0"
+
+
+
+
+
+ CVE-2017-10053
+
+
+ CVE-2017-10067
+
+
+ CVE-2017-10074
+
+
+ CVE-2017-10078
+
+
+ CVE-2017-10081
+
+
+ CVE-2017-10086
+
+
+ CVE-2017-10087
+
+
+ CVE-2017-10089
+
+
+ CVE-2017-10090
+
+
+ CVE-2017-10096
+
+
+ CVE-2017-10101
+
+
+ CVE-2017-10102
+
+
+ CVE-2017-10105
+
+
+ CVE-2017-10107
+
+
+ CVE-2017-10108
+
+
+ CVE-2017-10109
+
+
+ CVE-2017-10110
+
+
+ CVE-2017-10111
+
+
+ CVE-2017-10114
+
+
+ CVE-2017-10115
+
+
+ CVE-2017-10116
+
+
+ CVE-2017-10117
+
+
+ CVE-2017-10118
+
+
+ CVE-2017-10121
+
+
+ CVE-2017-10125
+
+
+ CVE-2017-10135
+
+
+ CVE-2017-10176
+
+
+ CVE-2017-10193
+
+
+ CVE-2017-10198
+
+
+ CVE-2017-10243
+
+
+ chrisadr
+ chrisadr
+
diff --git a/metadata/glsa/timestamp.chk b/metadata/glsa/timestamp.chk
index 23dc4f2f0773..20634175c06e 100644
--- a/metadata/glsa/timestamp.chk
+++ b/metadata/glsa/timestamp.chk
@@ -1 +1 @@
-Sun, 24 Sep 2017 17:39:43 +0000
+Mon, 25 Sep 2017 06:09:44 +0000
diff --git a/metadata/glsa/timestamp.commit b/metadata/glsa/timestamp.commit
index a0a52c397f91..44a85161c805 100644
--- a/metadata/glsa/timestamp.commit
+++ b/metadata/glsa/timestamp.commit
@@ -1 +1 @@
-60f3b493204edbafc32cd3db5cd4fabc600b9e8c 1506268284 2017-09-24T15:51:24+00:00
+0c85529041c6e2f981244617540091b4fec34eb9 1506290084 2017-09-24T21:54:44+00:00
diff --git a/metadata/md5-cache/app-admin/augeas-1.8.1 b/metadata/md5-cache/app-admin/augeas-1.8.1
index 3fa88d1ab15a..d881cf45a952 100644
--- a/metadata/md5-cache/app-admin/augeas-1.8.1
+++ b/metadata/md5-cache/app-admin/augeas-1.8.1
@@ -4,10 +4,10 @@ DESCRIPTION=A library for changing configuration files
EAPI=6
HOMEPAGE=http://augeas.net/
IUSE=static-libs test
-KEYWORDS=alpha amd64 ~arm ~hppa ia64 ~ppc ~ppc64 ~sparc x86
+KEYWORDS=alpha amd64 ~arm ~hppa ia64 ppc ~ppc64 ~sparc x86
LICENSE=LGPL-2.1
RDEPEND=dev-libs/libxml2 sys-libs/readline:=
SLOT=0
SRC_URI=http://download.augeas.net/augeas-1.8.1.tar.gz
_eclasses_=autotools 7027963e8e8cc12c91117bdb9225dc26 libtool 0081a71a261724730ec4c248494f044d multilib 97f470f374f2e94ccab04a2fb21d811e toolchain-funcs 185a06792159ca143528e7010368e8af
-_md5_=d67f271b9bf6a2075fd11573ca73a552
+_md5_=aa2797221845b6a9845fdf14197447ed
diff --git a/metadata/md5-cache/app-admin/rsyslog-8.27.0-r1 b/metadata/md5-cache/app-admin/rsyslog-8.27.0-r1
index 06d5792cbc28..8e823f1c1a96 100644
--- a/metadata/md5-cache/app-admin/rsyslog-8.27.0-r1
+++ b/metadata/md5-cache/app-admin/rsyslog-8.27.0-r1
@@ -10,4 +10,4 @@ RDEPEND=>=dev-libs/libfastjson-0.99.3:= >=dev-libs/libestr-0.1.9 >=dev-libs/libl
SLOT=0
SRC_URI=http://www.rsyslog.com/files/download/rsyslog/rsyslog-8.27.0.tar.gz -> rsyslog-8.27.0.tar.gz doc? ( http://www.rsyslog.com/files/download/rsyslog/rsyslog-doc-8.27.0.tar.gz -> rsyslog-docs-8.27.0.tar.gz )
_eclasses_=autotools 7027963e8e8cc12c91117bdb9225dc26 epatch 8233751dc5105a6ae8fcd86ce2bb0247 estack 43ddf5aaffa7a8d0482df54d25a66a1f eutils 9c113d6a64826c40154cad7be15d95ea libtool 0081a71a261724730ec4c248494f044d linux-info ca370deef9d44125d829f2eb6ebc83e0 ltprune 2770eed66a9b8ef944714cd0e968182e multilib 97f470f374f2e94ccab04a2fb21d811e systemd 34815d3b76e745c5ca33eec9f95074c2 toolchain-funcs 185a06792159ca143528e7010368e8af versionator c80ccf29e90adea7c5cae94b42eb76d0
-_md5_=4b88ffe5047f8817d911366f04358827
+_md5_=4bde383db6db23d90a34470b27fed456
diff --git a/metadata/md5-cache/app-admin/rsyslog-8.28.0 b/metadata/md5-cache/app-admin/rsyslog-8.28.0
index e6f487925253..5714f5bebaed 100644
--- a/metadata/md5-cache/app-admin/rsyslog-8.28.0
+++ b/metadata/md5-cache/app-admin/rsyslog-8.28.0
@@ -10,4 +10,4 @@ RDEPEND=>=dev-libs/libfastjson-0.99.3:= >=dev-libs/libestr-0.1.9 >=dev-libs/libl
SLOT=0
SRC_URI=http://www.rsyslog.com/files/download/rsyslog/rsyslog-8.28.0.tar.gz -> rsyslog-8.28.0.tar.gz doc? ( http://www.rsyslog.com/files/download/rsyslog/rsyslog-doc-8.28.0.tar.gz -> rsyslog-docs-8.28.0.tar.gz )
_eclasses_=autotools 7027963e8e8cc12c91117bdb9225dc26 epatch 8233751dc5105a6ae8fcd86ce2bb0247 estack 43ddf5aaffa7a8d0482df54d25a66a1f eutils 9c113d6a64826c40154cad7be15d95ea libtool 0081a71a261724730ec4c248494f044d linux-info ca370deef9d44125d829f2eb6ebc83e0 ltprune 2770eed66a9b8ef944714cd0e968182e multilib 97f470f374f2e94ccab04a2fb21d811e systemd 34815d3b76e745c5ca33eec9f95074c2 toolchain-funcs 185a06792159ca143528e7010368e8af versionator c80ccf29e90adea7c5cae94b42eb76d0
-_md5_=ea43ea1b5fb14b9808a5ab26f0f4be54
+_md5_=c2716bc7774707bcee751d6ed0364d51
diff --git a/metadata/md5-cache/app-admin/rsyslog-8.29.0 b/metadata/md5-cache/app-admin/rsyslog-8.29.0
index 3f7b1be5a47a..e4b2079e2db7 100644
--- a/metadata/md5-cache/app-admin/rsyslog-8.29.0
+++ b/metadata/md5-cache/app-admin/rsyslog-8.29.0
@@ -10,4 +10,4 @@ RDEPEND=>=dev-libs/libfastjson-0.99.3:= >=dev-libs/libestr-0.1.9 >=dev-libs/libl
SLOT=0
SRC_URI=http://www.rsyslog.com/files/download/rsyslog/rsyslog-8.29.0.tar.gz -> rsyslog-8.29.0.tar.gz doc? ( http://www.rsyslog.com/files/download/rsyslog/rsyslog-doc-8.29.0.tar.gz -> rsyslog-docs-8.29.0.tar.gz )
_eclasses_=autotools 7027963e8e8cc12c91117bdb9225dc26 epatch 8233751dc5105a6ae8fcd86ce2bb0247 estack 43ddf5aaffa7a8d0482df54d25a66a1f eutils 9c113d6a64826c40154cad7be15d95ea libtool 0081a71a261724730ec4c248494f044d linux-info ca370deef9d44125d829f2eb6ebc83e0 ltprune 2770eed66a9b8ef944714cd0e968182e multilib 97f470f374f2e94ccab04a2fb21d811e systemd 34815d3b76e745c5ca33eec9f95074c2 toolchain-funcs 185a06792159ca143528e7010368e8af versionator c80ccf29e90adea7c5cae94b42eb76d0
-_md5_=dadc59c2215a612196e58ad8ba9351df
+_md5_=afc2934c2a86b3b8aed675949c04b075
diff --git a/metadata/md5-cache/app-arch/unrar-5.5.8 b/metadata/md5-cache/app-arch/unrar-5.5.8
index fa3fec98f9a4..feec0a9bf2ac 100644
--- a/metadata/md5-cache/app-arch/unrar-5.5.8
+++ b/metadata/md5-cache/app-arch/unrar-5.5.8
@@ -2,10 +2,10 @@ DEFINED_PHASES=compile configure install prepare
DESCRIPTION=Uncompress rar files
EAPI=6
HOMEPAGE=http://www.rarlab.com/rar_add.htm
-KEYWORDS=alpha amd64 arm ~arm64 ~hppa ia64 ~m68k ~mips ppc ppc64 ~s390 ~sh ~sparc x86 ~amd64-fbsd ~x86-fbsd ~amd64-linux ~arm-linux ~x86-linux ~ppc-macos ~x64-macos ~x86-macos ~sparc-solaris ~x86-solaris
+KEYWORDS=alpha amd64 arm ~arm64 hppa ia64 ~m68k ~mips ppc ppc64 ~s390 ~sh ~sparc x86 ~amd64-fbsd ~x86-fbsd ~amd64-linux ~arm-linux ~x86-linux ~ppc-macos ~x64-macos ~x86-macos ~sparc-solaris ~x86-solaris
LICENSE=unRAR
RDEPEND=!<=app-arch/unrar-gpl-0.0.1_p20080417
SLOT=0/5
SRC_URI=http://www.rarlab.com/rar/unrarsrc-5.5.8.tar.gz -> unrar-5.5.8.tar.gz
_eclasses_=epatch 8233751dc5105a6ae8fcd86ce2bb0247 estack 43ddf5aaffa7a8d0482df54d25a66a1f eutils 9c113d6a64826c40154cad7be15d95ea flag-o-matic 2274fcc1e7ef6affaff5bcd636275417 ltprune 2770eed66a9b8ef944714cd0e968182e multilib 97f470f374f2e94ccab04a2fb21d811e toolchain-funcs 185a06792159ca143528e7010368e8af
-_md5_=bcb02f1f186f6285e8e28b69d3936a71
+_md5_=a87fe37d029786ee0b7ef18757822944
diff --git a/metadata/md5-cache/app-crypt/moolticute-0.9.8_beta b/metadata/md5-cache/app-crypt/moolticute-0.9.8_beta
new file mode 100644
index 000000000000..98e24ca07c42
--- /dev/null
+++ b/metadata/md5-cache/app-crypt/moolticute-0.9.8_beta
@@ -0,0 +1,12 @@
+DEFINED_PHASES=configure install postinst postrm
+DEPEND=>=dev-libs/libusb-1.0.20 >=dev-qt/qtcore-5.6:5 dev-qt/qtgui:5 dev-qt/qtnetwork:5 dev-qt/qttest:5 dev-qt/qtwebsockets:5 dev-qt/qtwidgets:5 >=sys-apps/sed-4 virtual/pkgconfig
+DESCRIPTION=Mooltipass crossplatform daemon/tools
+EAPI=6
+HOMEPAGE=https://github.com/raoulh/moolticute
+KEYWORDS=~amd64 ~arm
+LICENSE=GPL-3
+RDEPEND=>=dev-libs/libusb-1.0.20 >=dev-qt/qtcore-5.6:5 dev-qt/qtgui:5 dev-qt/qtnetwork:5 dev-qt/qttest:5 dev-qt/qtwebsockets:5 dev-qt/qtwidgets:5
+SLOT=0
+SRC_URI=https://github.com/raoulh/moolticute/archive/v0.9.8-beta.tar.gz -> moolticute-0.9.8_beta.tar.gz
+_eclasses_=epatch 8233751dc5105a6ae8fcd86ce2bb0247 estack 43ddf5aaffa7a8d0482df54d25a66a1f eutils 9c113d6a64826c40154cad7be15d95ea gnome2-utils 4d211d7614f303710fca59db6ec12c88 ltprune 2770eed66a9b8ef944714cd0e968182e multilib 97f470f374f2e94ccab04a2fb21d811e qmake-utils 990448b067cb3cfe1443bc25fb57239c toolchain-funcs 185a06792159ca143528e7010368e8af udev d91cac2c73b94629cad2daea66e0d182 xdg-utils f2c8335407f0b935b0a96d4adf23ef25
+_md5_=3e0693ff1c4fa7dace52ff54008dfb10
diff --git a/metadata/md5-cache/app-crypt/moolticute-9999 b/metadata/md5-cache/app-crypt/moolticute-9999
new file mode 100644
index 000000000000..f00d6059fd98
--- /dev/null
+++ b/metadata/md5-cache/app-crypt/moolticute-9999
@@ -0,0 +1,10 @@
+DEFINED_PHASES=configure install postinst postrm unpack
+DEPEND=>=dev-libs/libusb-1.0.20 >=dev-qt/qtcore-5.6:5 dev-qt/qtgui:5 dev-qt/qtnetwork:5 dev-qt/qttest:5 dev-qt/qtwebsockets:5 dev-qt/qtwidgets:5 >=dev-vcs/git-1.8.2.1 >=sys-apps/sed-4 virtual/pkgconfig
+DESCRIPTION=Mooltipass crossplatform daemon/tools
+EAPI=6
+HOMEPAGE=https://github.com/raoulh/moolticute
+LICENSE=GPL-3
+RDEPEND=>=dev-libs/libusb-1.0.20 >=dev-qt/qtcore-5.6:5 dev-qt/qtgui:5 dev-qt/qtnetwork:5 dev-qt/qttest:5 dev-qt/qtwebsockets:5 dev-qt/qtwidgets:5
+SLOT=0
+_eclasses_=epatch 8233751dc5105a6ae8fcd86ce2bb0247 estack 43ddf5aaffa7a8d0482df54d25a66a1f eutils 9c113d6a64826c40154cad7be15d95ea git-r3 52a888802d25387c2c74cb845d1219bc gnome2-utils 4d211d7614f303710fca59db6ec12c88 ltprune 2770eed66a9b8ef944714cd0e968182e multilib 97f470f374f2e94ccab04a2fb21d811e qmake-utils 990448b067cb3cfe1443bc25fb57239c toolchain-funcs 185a06792159ca143528e7010368e8af udev d91cac2c73b94629cad2daea66e0d182 xdg-utils f2c8335407f0b935b0a96d4adf23ef25
+_md5_=3e0693ff1c4fa7dace52ff54008dfb10
diff --git a/metadata/md5-cache/app-crypt/yubikey-manager-0.4.4 b/metadata/md5-cache/app-crypt/yubikey-manager-0.4.5
similarity index 99%
rename from metadata/md5-cache/app-crypt/yubikey-manager-0.4.4
rename to metadata/md5-cache/app-crypt/yubikey-manager-0.4.5
index 0e97c2b592e0..1d6d1a74be26 100644
--- a/metadata/md5-cache/app-crypt/yubikey-manager-0.4.4
+++ b/metadata/md5-cache/app-crypt/yubikey-manager-0.4.5
@@ -10,6 +10,6 @@ RDEPEND=app-crypt/libu2f-host dev-python/six[python_targets_python2_7(-)?,python
REQUIRED_USE=|| ( python_targets_python2_7 python_targets_python3_4 python_targets_python3_5 python_targets_python3_6 )
RESTRICT=test
SLOT=0
-SRC_URI=https://developers.yubico.com/yubikey-manager/Releases/yubikey-manager-0.4.4.tar.gz
+SRC_URI=https://developers.yubico.com/yubikey-manager/Releases/yubikey-manager-0.4.5.tar.gz
_eclasses_=distutils-r1 372bbe39047c0a2550319a3a82f3e063 multibuild 72647e255187a1fadc81097b3657e5c3 multilib 97f470f374f2e94ccab04a2fb21d811e multiprocessing 6f5991c7101863d0b29df63990ad852e python-r1 e9350ec46bb5c9f3504b4fbe8b8d8987 python-utils-r1 c9de01becf9df3f8c10aeec3dc693f5d toolchain-funcs 185a06792159ca143528e7010368e8af xdg-utils f2c8335407f0b935b0a96d4adf23ef25
_md5_=d19ba0191ed14eae98b6b243b1735f64
diff --git a/metadata/md5-cache/dev-libs/dfxml-20170921 b/metadata/md5-cache/app-forensics/dfxml-20170921-r1
similarity index 89%
rename from metadata/md5-cache/dev-libs/dfxml-20170921
rename to metadata/md5-cache/app-forensics/dfxml-20170921-r1
index 1496f25f6a1f..c9cc15141517 100644
--- a/metadata/md5-cache/dev-libs/dfxml-20170921
+++ b/metadata/md5-cache/app-forensics/dfxml-20170921-r1
@@ -1,4 +1,4 @@
-DEFINED_PHASES=install prepare unpack
+DEFINED_PHASES=prepare unpack
DEPEND=dev-libs/expat >=app-portage/elt-patches-20170422 !