SUSE Security Update: Security update for IBM Java
______________________________________________________________________________

Announcement ID:    SUSE-SU-2013:0871-2
Rating:             important
References:         #592934 #819285 #819288 
Cross-References:   CVE-2013-0401 CVE-2013-1491 CVE-2013-1537
                    CVE-2013-1540 CVE-2013-1557 CVE-2013-1563
                    CVE-2013-1569 CVE-2013-2383 CVE-2013-2384
                    CVE-2013-2394 CVE-2013-2417 CVE-2013-2418
                    CVE-2013-2419 CVE-2013-2420 CVE-2013-2422
                    CVE-2013-2424 CVE-2013-2429 CVE-2013-2430
                    CVE-2013-2432 CVE-2013-2433 CVE-2013-2435
                    CVE-2013-2440
Affected Products:
                    SUSE Linux Enterprise Software Development Kit 11 SP3
                    SUSE Linux Enterprise Server 11 SP3 for VMware
                    SUSE Linux Enterprise Server 11 SP3
______________________________________________________________________________

   An update that fixes 22 vulnerabilities is now available.

Description:


   IBM Java 1.7.0 has been updated to SR4-FP2 which fixes bugs
   and security  issues.

   https://www.ibm.com/support/pages/java-sdk/
   

   Security Issue references:

   * CVE-2013-2422
   
   * CVE-2013-1491
   
   * CVE-2013-2435
   
   * CVE-2013-2420
   
   * CVE-2013-2432
   
   * CVE-2013-1569
   
   * CVE-2013-2384
   
   * CVE-2013-2383
   
   * CVE-2013-1557
   
   * CVE-2013-1537
   
   * CVE-2013-2440
   
   * CVE-2013-2429
   
   * CVE-2013-2430
   
   * CVE-2013-1563
   
   * CVE-2013-2394
   
   * CVE-2013-0401
   
   * CVE-2013-2424
   
   * CVE-2013-2419
   
   * CVE-2013-2417
   
   * CVE-2013-2418
   
   * CVE-2013-1540
   
   * CVE-2013-2433
   


Patch Instructions:

   To install this SUSE Security Update use YaST online_update.
   Alternatively you can run the command listed for your product:

   - SUSE Linux Enterprise Software Development Kit 11 SP3:

      zypper in -t patch sdksp3-java-1_7_0-ibm-7921

   - SUSE Linux Enterprise Server 11 SP3 for VMware:

      zypper in -t patch slessp3-java-1_7_0-ibm-7921

   - SUSE Linux Enterprise Server 11 SP3:

      zypper in -t patch slessp3-java-1_7_0-ibm-7921

   To bring your system up-to-date, use "zypper patch".


Package List:

   - SUSE Linux Enterprise Software Development Kit 11 SP3 (i586 ppc64 s390x x86_64):

      java-1_7_0-ibm-devel-1.7.0_sr4.2-0.6.1

   - SUSE Linux Enterprise Server 11 SP3 for VMware (i586 x86_64):

      java-1_7_0-ibm-1.7.0_sr4.2-0.6.1
      java-1_7_0-ibm-alsa-1.7.0_sr4.2-0.6.1
      java-1_7_0-ibm-jdbc-1.7.0_sr4.2-0.6.1
      java-1_7_0-ibm-plugin-1.7.0_sr4.2-0.6.1

   - SUSE Linux Enterprise Server 11 SP3 (i586 ppc64 s390x x86_64):

      java-1_7_0-ibm-1.7.0_sr4.2-0.6.1
      java-1_7_0-ibm-jdbc-1.7.0_sr4.2-0.6.1

   - SUSE Linux Enterprise Server 11 SP3 (i586 x86_64):

      java-1_7_0-ibm-alsa-1.7.0_sr4.2-0.6.1
      java-1_7_0-ibm-plugin-1.7.0_sr4.2-0.6.1


References:

   https://www.suse.com/security/cve/CVE-2013-0401.html
   https://www.suse.com/security/cve/CVE-2013-1491.html
   https://www.suse.com/security/cve/CVE-2013-1537.html
   https://www.suse.com/security/cve/CVE-2013-1540.html
   https://www.suse.com/security/cve/CVE-2013-1557.html
   https://www.suse.com/security/cve/CVE-2013-1563.html
   https://www.suse.com/security/cve/CVE-2013-1569.html
   https://www.suse.com/security/cve/CVE-2013-2383.html
   https://www.suse.com/security/cve/CVE-2013-2384.html
   https://www.suse.com/security/cve/CVE-2013-2394.html
   https://www.suse.com/security/cve/CVE-2013-2417.html
   https://www.suse.com/security/cve/CVE-2013-2418.html
   https://www.suse.com/security/cve/CVE-2013-2419.html
   https://www.suse.com/security/cve/CVE-2013-2420.html
   https://www.suse.com/security/cve/CVE-2013-2422.html
   https://www.suse.com/security/cve/CVE-2013-2424.html
   https://www.suse.com/security/cve/CVE-2013-2429.html
   https://www.suse.com/security/cve/CVE-2013-2430.html
   https://www.suse.com/security/cve/CVE-2013-2432.html
   https://www.suse.com/security/cve/CVE-2013-2433.html
   https://www.suse.com/security/cve/CVE-2013-2435.html
   https://www.suse.com/security/cve/CVE-2013-2440.html
   https://bugzilla.novell.com/592934
   https://bugzilla.novell.com/819285
   https://bugzilla.novell.com/819288
   https://login.microfocus.com/nidp/app/login

SuSE: 2013:0871-2: important: IBM Java

July 3, 2013
An update that fixes 22 vulnerabilities is now available

Summary

IBM Java 1.7.0 has been updated to SR4-FP2 which fixes bugs and security issues. https://www.ibm.com/support/pages/java-sdk/ Security Issue references: * CVE-2013-2422 * CVE-2013-1491 * CVE-2013-2435 * CVE-2013-2420 * CVE-2013-2432 * CVE-2013-1569 * CVE-2013-2384 * CVE-2013-2383 * CVE-2013-1557 * CVE-2013-1537 * CVE-2013-2440 * CVE-2013-2429 * CVE-2013-2430 * CVE-2013-1563 * CVE-2013-2394 * CVE-2013-0401 * CVE-2013-2424 * CVE-2013-2419 * CVE-2013-2417 * CVE-2013-2418 * CVE-2013-1540 * CVE-2013-2433 Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Software Development Kit 11 SP3: zypper in -t patch sdksp3-java-1_7_0-ibm-7921 - SUSE Linux Enterprise Server 11 SP3 for VMware: zypper in -t patch slessp3-java-1_7_0-ibm-7921 - SUSE Linux Enterprise Server 11 SP3: zypper in -t patch slessp3-java-1_7_0-ibm-7921 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Software Development Kit 11 SP3 (i586 ppc64 s390x x86_64): java-1_7_0-ibm-devel-1.7.0_sr4.2-0.6.1 - SUSE Linux Enterprise Server 11 SP3 for VMware (i586 x86_64): java-1_7_0-ibm-1.7.0_sr4.2-0.6.1 java-1_7_0-ibm-alsa-1.7.0_sr4.2-0.6.1 java-1_7_0-ibm-jdbc-1.7.0_sr4.2-0.6.1 java-1_7_0-ibm-plugin-1.7.0_sr4.2-0.6.1 - SUSE Linux Enterprise Server 11 SP3 (i586 ppc64 s390x x86_64): java-1_7_0-ibm-1.7.0_sr4.2-0.6.1 java-1_7_0-ibm-jdbc-1.7.0_sr4.2-0.6.1 - SUSE Linux Enterprise Server 11 SP3 (i586 x86_64): java-1_7_0-ibm-alsa-1.7.0_sr4.2-0.6.1 java-1_7_0-ibm-plugin-1.7.0_sr4.2-0.6.1

References

#592934 #819285 #819288

Cross- CVE-2013-0401 CVE-2013-1491 CVE-2013-1537

CVE-2013-1540 CVE-2013-1557 CVE-2013-1563

CVE-2013-1569 CVE-2013-2383 CVE-2013-2384

CVE-2013-2394 CVE-2013-2417 CVE-2013-2418

CVE-2013-2419 CVE-2013-2420 CVE-2013-2422

CVE-2013-2424 CVE-2013-2429 CVE-2013-2430

CVE-2013-2432 CVE-2013-2433 CVE-2013-2435

CVE-2013-2440

Affected Products:

SUSE Linux Enterprise Software Development Kit 11 SP3

SUSE Linux Enterprise Server 11 SP3 for VMware

SUSE Linux Enterprise Server 11 SP3

https://www.suse.com/security/cve/CVE-2013-0401.html

https://www.suse.com/security/cve/CVE-2013-1491.html

https://www.suse.com/security/cve/CVE-2013-1537.html

https://www.suse.com/security/cve/CVE-2013-1540.html

https://www.suse.com/security/cve/CVE-2013-1557.html

https://www.suse.com/security/cve/CVE-2013-1563.html

https://www.suse.com/security/cve/CVE-2013-1569.html

https://www.suse.com/security/cve/CVE-2013-2383.html

https://www.suse.com/security/cve/CVE-2013-2384.html

https://www.suse.com/security/cve/CVE-2013-2394.html

https://www.suse.com/security/cve/CVE-2013-2417.html

https://www.suse.com/security/cve/CVE-2013-2418.html

https://www.suse.com/security/cve/CVE-2013-2419.html

https://www.suse.com/security/cve/CVE-2013-2420.html

https://www.suse.com/security/cve/CVE-2013-2422.html

https://www.suse.com/security/cve/CVE-2013-2424.html

https://www.suse.com/security/cve/CVE-2013-2429.html

https://www.suse.com/security/cve/CVE-2013-2430.html

https://www.suse.com/security/cve/CVE-2013-2432.html

https://www.suse.com/security/cve/CVE-2013-2433.html

https://www.suse.com/security/cve/CVE-2013-2435.html

https://www.suse.com/security/cve/CVE-2013-2440.html

https://bugzilla.novell.com/592934

https://bugzilla.novell.com/819285

https://bugzilla.novell.com/819288

https://login.microfocus.com/nidp/app/login

Severity
Announcement ID: SUSE-SU-2013:0871-2
Rating: important

Related News