Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

SUSE 12: 2015:1161-1 Critical: Java-1_6_0-IBM Security Update

suse
Calendar Grey June 30, 2015
Scroller Suse
SUSE Security Alert for java-1_8_0-oracle resolves severe vulnerabilities within setup guidelines.
An update that fixes 13 vulnerabilities is now available

Summary

IBM Java 1.6.0 was updated to SR16-FP4 fixing security issues and bugs. Tabulated information can be found on: [https://www.ibm.com/support/pages/java-sdk/ _2015](https://www.ibm.com/support/pages/java-sdk/ te_May_2015) CVEs addressed: CVE-2015-0192 CVE-2015-2808 CVE-2015-1914 CVE-2015-0138 CVE-2015-0491 CVE-2015-0458 CVE-2015-0459 CVE-2015-0469 CVE-2015-0480 CVE-2015-0488 CVE-2015-0478 CVE-2015-0477 CVE-2015-0204 Additional bugs fixed: * Fix javaws/plugin stuff should slave plugin update-alternatives (bnc#912434) * Changed Java to use the system root CA certificates (bnc#912447) Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for Legacy Software 12:

References

#912434 #912447 #930365 #931702

Cross- CVE-2015-0138 CVE-2015-0192 CVE-2015-0204

CVE-2015-0458 CVE-2015-0459 CVE-2015-0469

CVE-2015-0477 CVE-2015-0478 CVE-2015-0480

CVE-2015-0488 CVE-2015-0491 CVE-2015-1914

CVE-2015-2808

Affected Products:

SUSE Linux Enterprise Module for Legacy Software 12

https://www.suse.com/security/cve/CVE-2015-0138.html

https://www.suse.com/security/cve/CVE-2015-0192.html

https://www.suse.com/security/cve/CVE-2015-0204.html

https://www.suse.com/security/cve/CVE-2015-0458.html

https://www.suse.com/security/cve/CVE-2015-0459.html

https://www.suse.com/security/cve/CVE-2015-0469.html

https://www.suse.com/security/cve/CVE-2015-0477.html

https://www.suse.com/security/cve/CVE-2015-0478.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2015:1161-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.