The official Java 6 binaries update 24 are available from Oracle. Oracle claims that CVE-2010-4476 is fixed in it. I guess it is time for Ubuntu to create packages from it ASAP.
http://www.oracle.com/technetwork/java/javase/downloads/index- jsp-138363.html -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/716689 Title: Security Alert For CVE-2010-4476 Released -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs