icedtea-web: security update
This update of icedtea/icedtea-web fixes two issues:
- CVE-2011-2513: CVSS v2 Base Score: 4.3: An information
leak allows unsigned Web Start applications to determine
the path to the cache directory used to store downloaded
class and jar files.
- CVE-2011-2514: CVSS v2 Base Score: 5.1 An unsigned Web
Start application could manipulate content of the
security warning dialog message to show different file
name in prompts.
-
Submitted by
Adrian Schröter (adrianSuSE)
- Version 4910