Date: Tue, 7 Apr 2009 13:31:38 -0500 Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Critical: java (jdk 1.6.0) on SL4.x, SL5.x i386/x86_64 Comments: To: "scientific-linux-errata@fnal.gov" Synopsis: Critical: java (jdk 1.6.0) security update Issue date: 2009-03-26 CVE Names: CVE-2006-2426 CVE-2009-1093 CVE-2009-1094 CVE-2009-1095 CVE-2009-1096 CVE-2009-1097 CVE-2009-1098 CVE-2009-1099 CVE-2009-1100 CVE-2009-1101 CVE-2009-1102 CVE-2009-1103 CVE-2009-1104 CVE-2009-1105 CVE-2009-1106 CVE-2009-1107 This update fixes several vulnerabilities in the Sun Java 6 Runtime Environment and the Sun Java 6 Software Development Kit. These vulnerabilities are summarized on the "Advance notification of Security Updates for Java SE" page from Sun Microsystems, listed in the References section. All running instances of Sun Java must be restarted for the update to take effect. Note: jdk-1.6.0_13-fcs.x86_64.rpm could not be signed. All other rpm's are signed with the usual signature. SL 4.x SRPMS: java-1.6.0-sun-compat-1.6.0.13-1.sl4.jpp.src.rpm i386: java-1.6.0-sun-compat-1.6.0.13-1.sl4.jpp.i586.rpm jdk-1.6.0_13-fcs.i586.rpm x86_64: java-1.6.0-sun-compat-1.6.0.13-1.sl4.jpp.i586.rpm jdk-1.6.0_13-fcs.i586.rpm SL 5.x SRPMS: java-1.6.0-sun-compat-1.6.0.13-1.sl5.jpp.src.rpm i386: java-1.6.0-sun-compat-1.6.0.13-1.sl5.jpp.i586.rpm jdk-1.6.0_13-fcs.i586.rpm x86_64: java-1.6.0-sun-compat-1.6.0.13-1.sl5.jpp.i586.rpm java-1.6.0-sun-compat-1.6.0.13-1.sl5.jpp.x86_64.rpm jdk-1.6.0_13-fcs.i586.rpm jdk-1.6.0_13-fcs.x86_64.rpm -Connie Sieh -Troy Dawson