Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
OpenJDK was updated to 2.6.1 - OpenJDK 7u85 to fix security issues and
bugs.
The following vulnerabilities were fixed:
* CVE-2015-2590: Easily exploitable vulnerability in the Libraries
component allowed successful unauthenticated network attacks via
multiple protocols. Successful attack of this vulnerability could have
resulted in unauthorized Operating System takeover including arbitrary
code execution.
* CVE-2015-2596: Difficult to exploit vulnerability in the Hotspot
component allowed successful unauthenticated network attacks via
multiple protocols. Successful attack of this vulnerability could have
resulted in unauthorized update, insert or delete access to some Java
accessible data.
* CVE-2015-2597: Easily exploitable vulnerability in the Install component
requiring logon to Operating System. Successful attack of this
vulnerability could have resulted in unauthorized Operating System
takeover including...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.2:
zypper in -t patch openSUSE-2015-511=1
- openSUSE 13.1:
zypper in -t patch openSUSE-2015-511=1
To bring your system up-to-date, use "zypper patch".
- openSUSE 13.2 (i586 x86_64):
java-1_7_0-openjdk-1.7.0.85-10.2
java-1_7_0-openjdk-accessibility-1.7.0.85-10.2
java-1_7_0-openjdk-bootstrap-1.7.0.85-10.1
java-1_7_0-openjdk-bootstrap-debuginfo-1.7.0.85-10.1
java-1_7_0-openjdk-bootstrap-debugsource-1.7.0.85-10.1
java-1_7_0-openjdk-bootstrap-devel-1.7.0.85-10.1
java-1_7_0-openjdk-bootstrap-devel-debuginfo-1.7.0.85-10.1
java-1_7_0-openjdk-bootstrap-headless-1.7.0.85-10.1
java-1_7_0-openjdk-bootstrap-headless-debuginfo-1.7.0.85-10.1
java-1_7_0-openjdk-debuginfo-1.7.0.85-10.2
java-1_7_0-openjdk-debugsource-1.7.0.85-10.2
java-1_7_0-openjdk-demo-1.7.0.85-10.2
java-1_7_0-openjdk-demo-debuginfo-1.7.0.85-10.2
java-1_7_0-openjdk-devel-1.7.0.85-10.2
java-1_7_0-openjdk-devel-debuginfo-1.7.0.85-10.2
java-1_7_0-openjdk-headless-1.7.0.85-10.2
java-1_7_0-openjdk-headless-debuginfo-1.7.0.85-10.2
java-1_7_0-openjdk-src-1.7.0.85-10.2
- openSUSE 13.2 (noarch):
java-1_7_0-openjdk-javadoc-1.7.0.85-10.2
- openSUSE 13.1 (i586 x86_64):
java-1_7_0-openjdk-1.7.0.85-24.21.1
java-1_7_0-o...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2015-2590.html
https://www.suse.com/security/cve/CVE-2015-2596.html
https://www.suse.com/security/cve/CVE-2015-2597.html
https://www.suse.com/security/cve/CVE-2015-2601.html
https://www.suse.com/security/cve/CVE-2015-2613.html
https://www.suse.com/security/cve/CVE-2015-2619.html
https://www.suse.com/security/cve/CVE-2015-2621.html
https://www.suse.com/security/cve/CVE-2015-2625.html
https://www.suse.com/security/cve/CVE-2015-2627.html
https://www.suse.com/security/cve/CVE-2015-2628.html
https://www.suse.com/security/cve/CVE-2015-2632.html
https://www.suse.com/security/cve/CVE-2015-2637.html
https://www.suse.com/security/cve/CVE-2015-2638.html
https://www.suse.com/security/cve/CVE-2015-2664.html
https://www.suse.com/security/cve/CVE-2015-2808.html
https://www.suse.com/security/cve/CVE-2015-4000.html
https://www.suse.com/security/cve/CVE-2015-4729.html
https://www.suse.com/security/cve/CVE-2015-4731.html
https://www.suse.com/security/cve/CVE-2015-4732.html
https://www....
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.