Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

SUSE: 2015:0504-1 Critical: OpenSSL Security Flaws Detected

suse
Calendar Grey March 16, 2015
Dist Suse Esm H88
Important openSUSE security patch for java-1_7_0-openjdk addressing 13 vulnerabilities. Verify that all systems are protected and current.
An update that fixes 13 vulnerabilities is now available

Summary

This update fixes 13 security issues. These security issues were fixed: - CVE-2015-0395: Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allowed remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot (bnc#914041). - CVE-2015-0400: Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allowed remote attackers to affect confidentiality via unknown vectors related to Libraries (bnc#914041). - CVE-2015-0383: Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit R27.8.4 and R28.3.4 allowed local users to affect integrity and availability via unknown vectors related to Hotspot (bnc#914041).

References

#901223 #914041

Cross- CVE-2014-3566 CVE-2014-6585 CVE-2014-6587

CVE-2014-6591 CVE-2014-6593 CVE-2014-6601

CVE-2015-0383 CVE-2015-0395 CVE-2015-0400

CVE-2015-0407 CVE-2015-0408 CVE-2015-0410

CVE-2015-0412

Affected Products:

SUSE Linux Enterprise Server 12

SUSE Linux Enterprise Desktop 12

https://www.suse.com/security/cve/CVE-2014-3566.html

https://www.suse.com/security/cve/CVE-2014-6585.html

https://www.suse.com/security/cve/CVE-2014-6587.html

https://www.suse.com/security/cve/CVE-2014-6591.html

https://www.suse.com/security/cve/CVE-2014-6593.html

https://www.suse.com/security/cve/CVE-2014-6601.html

https://www.suse.com/security/cve/CVE-2015-0383.html

https://www.suse.com/security/cve/CVE-2015-0395.html

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2015:0503-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here