Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
OpenJDK was updated to 2.6.1 - OpenJDK 8u51 to fix security issues and
bugs.
The following vulnerabilities were fixed:
* CVE-2015-2590: Easily exploitable vulnerability in the Libraries
component allowed successful unauthenticated network attacks via
multiple protocols. Successful attack of this vulnerability could have
resulted in unauthorized Operating System takeover including arbitrary
code execution.
* CVE-2015-2597: Easily exploitable vulnerability in the Install component
requiring logon to Operating System. Successful attack of this
vulnerability could have resulted in unauthorized Operating System
takeover including arbitrary code execution.
* CVE-2015-2601: Easily exploitable vulnerability in the JCE component
allowed successful unauthenticated network attacks via multiple
protocols. Successful attack of this vulnerability could have resulted
in unauthorized read access to a subset of Java accessible...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 13.2:
zypper in -t patch openSUSE-2015-512=1
To bring your system up-to-date, use "zypper patch".
- openSUSE 13.2 (i586 x86_64):
java-1_8_0-openjdk-1.8.0.51-12.1
java-1_8_0-openjdk-accessibility-1.8.0.51-12.1
java-1_8_0-openjdk-debuginfo-1.8.0.51-12.1
java-1_8_0-openjdk-debugsource-1.8.0.51-12.1
java-1_8_0-openjdk-demo-1.8.0.51-12.1
java-1_8_0-openjdk-demo-debuginfo-1.8.0.51-12.1
java-1_8_0-openjdk-devel-1.8.0.51-12.1
java-1_8_0-openjdk-headless-1.8.0.51-12.1
java-1_8_0-openjdk-headless-debuginfo-1.8.0.51-12.1
java-1_8_0-openjdk-src-1.8.0.51-12.1
- openSUSE 13.2 (noarch):
java-1_8_0-openjdk-javadoc-1.8.0.51-12.1
https://www.suse.com/security/cve/CVE-2015-2590.html
https://www.suse.com/security/cve/CVE-2015-2597.html
https://www.suse.com/security/cve/CVE-2015-2601.html
https://www.suse.com/security/cve/CVE-2015-2613.html
https://www.suse.com/security/cve/CVE-2015-2619.html
https://www.suse.com/security/cve/CVE-2015-2621.html
https://www.suse.com/security/cve/CVE-2015-2625.html
https://www.suse.com/security/cve/CVE-2015-2627.html
https://www.suse.com/security/cve/CVE-2015-2628.html
https://www.suse.com/security/cve/CVE-2015-2632.html
https://www.suse.com/security/cve/CVE-2015-2637.html
https://www.suse.com/security/cve/CVE-2015-2638.html
https://www.suse.com/security/cve/CVE-2015-2659.html
https://www.suse.com/security/cve/CVE-2015-2664.html
https://www.suse.com/security/cve/CVE-2015-2808.html
https://www.suse.com/security/cve/CVE-2015-4000.html
https://www.suse.com/security/cve/CVE-2015-4729.html
https://www.suse.com/security/cve/CVE-2015-4731.html
https://www.suse.com/security/cve/CVE-2015-4732.html
https://www....
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.