Debian: DSA-2923-1: openjdk-7 security update

    Date05 May 2014
    CategoryDebian
    41
    Posted ByLinuxSecurity Advisories
    Several vulnerabilities have been discovered in OpenJDK, an implementation of the Oracle Java platform, resulting in the execution of arbitrary code, breakouts of the Java sandbox, information disclosure or denial of service.
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1
    
    - -------------------------------------------------------------------------
    Debian Security Advisory DSA-2923-1                   This email address is being protected from spambots. You need JavaScript enabled to view it.
    http://www.debian.org/security/                        Moritz Muehlenhoff
    May 05, 2014                           http://www.debian.org/security/faq
    - -------------------------------------------------------------------------
    
    Package        : openjdk-7
    CVE ID         : CVE-2013-6629 CVE-2013-6954 CVE-2014-0429 CVE-2014-0446 
                     CVE-2014-0451 CVE-2014-0452 CVE-2014-0453 CVE-2014-0454
                     CVE-2014-0455 CVE-2014-0456 CVE-2014-0457 CVE-2014-0458
                     CVE-2014-0459 CVE-2014-0460 CVE-2014-0461 CVE-2014-1876 
                     CVE-2014-2397 CVE-2014-2398 CVE-2014-2402 CVE-2014-2403 
                     CVE-2014-2412 CVE-2014-2413 CVE-2014-2414 CVE-2014-2421
                     CVE-2014-2423 CVE-2014-2427
    
    Several vulnerabilities have been discovered in OpenJDK, an 
    implementation of the Oracle Java platform, resulting in the execution 
    of arbitrary code, breakouts of the Java sandbox, information disclosure
    or denial of service.
    
    For the stable distribution (wheezy), these problems have been fixed in
    version 7u55-2.4.7-1~deb7u1.
    
    For the unstable distribution (sid), these problems have been fixed in
    version 7u55-2.4.7-1.
    
    We recommend that you upgrade your openjdk-7 packages.
    
    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: http://www.debian.org/security/
    
    Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it.
    
    You are not authorised to post comments.

    Comments powered by CComment

    LinuxSecurity Poll

    What do you think of the articles on LinuxSecurity?

    No answer selected. Please try again.
    Please select either existing option or enter your own, however not both.
    Please select minimum 0 answer(s) and maximum 3 answer(s).
    /main-polls/24-what-do-you-think-of-the-quality-of-the-articles-on-linuxsecurity?task=poll.vote&format=json
    24
    radio
    [{"id":"87","title":"Excellent, don't change a thing!","votes":"15","type":"x","order":"1","pct":53.57,"resources":[]},{"id":"88","title":"Should be more technical","votes":"4","type":"x","order":"2","pct":14.29,"resources":[]},{"id":"89","title":"Should include more HOWTOs","votes":"9","type":"x","order":"3","pct":32.14,"resources":[]}]["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"]["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"]350
    bottom200

    We use cookies to provide and improve our services. By using our site, you consent to our Cookie Policy.