Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Date: Wed, 7 Nov 2012 14:46:11 -0600 Reply-To: Pat RieheckySender: Security Errata for Scientific Linux From: Pat Riehecky Organization: Fermilab Subject: Security ERRATA Critical: icedtea-web on SL6.x i386/x86_64 MIME-Version: 1.0 Synopsis: Critical: icedtea-web security update Issue Date: 2012-11-07 CVE Numbers: CVE-2012-4540 -- A buffer overflow flaw was found in the IcedTea-Web plug-in. Visiting a malicious web page could cause a web browser using the IcedTea-Web plug-in to crash or, possibly, execute arbitrary code. (CVE-2012-4540) This erratum also upgrades IcedTea-Web to version 1.2.2. Web browsers using the IcedTea-Web browser plug-in must be restarted for this update to take effect. -- SL6 x86_64 icedtea-web-1.2.2-1.el6_3.x86_64.rpm icedtea-web-javadoc-1.2.2-1.el6_3.x86_64.rpm i386 icedtea-web-1.2.2-1.el6_3.i686.rpm icedtea-web-javadoc-1.2.2-1.el6_3.i686.rpm - Scientific Linux Development Team