Alerts This Week
Warning Icon 1 697
Alerts This Week
Warning Icon 1 697

SUSE Linux Enterprise 12: SUSE-SU-2015:1319-1 Important Java Security Fix

suse
Calendar Grey July 30, 2015
Dist Suse Esm H88
SUSE announces an upgrade SUSE-SU-2015:1320-1 resolving 30 vulnerabilities in java-1_8_0-openjdk. Potential security threats have been mitigated.
An update that fixes 24 vulnerabilities is now available

Summary

OpenJDK was updated to 2.6.1 - OpenJDK 7u85 to fix security issues and bugs. The following vulnerabilities were fixed: * CVE-2015-2590: Easily exploitable vulnerability in the Libraries component allowed successful unauthenticated network attacks via multiple protocols. Successful attack of this vulnerability could have resulted in unauthorized Operating System takeover including arbitrary code execution. * CVE-2015-2596: Difficult to exploit vulnerability in the Hotspot component allowed successful unauthenticated network attacks via multiple protocols. Successful attack of this vulnerability could have resulted in unauthorized update, insert or delete access to some Java accessible data. * CVE-2015-2597: Easily exploitable vulnerability in the Install component

References

#938248

Cross- CVE-2015-2590 CVE-2015-2596 CVE-2015-2597

CVE-2015-2601 CVE-2015-2613 CVE-2015-2619

CVE-2015-2621 CVE-2015-2625 CVE-2015-2627

CVE-2015-2628 CVE-2015-2632 CVE-2015-2637

CVE-2015-2638 CVE-2015-2664 CVE-2015-2808

CVE-2015-4000 CVE-2015-4729 CVE-2015-4731

CVE-2015-4732 CVE-2015-4733 CVE-2015-4736

CVE-2015-4748 CVE-2015-4749 CVE-2015-4760

Affected Products:

SUSE Linux Enterprise Server 12

SUSE Linux Enterprise Desktop 12

https://www.suse.com/security/cve/CVE-2015-2590.html

https://www.suse.com/security/cve/CVE-2015-2596.html

https://www.suse.com/security/cve/CVE-2015-2597.html

https://www.suse.com/security/cve/CVE-2015-2601.html

https://www.suse.com/security/cve/CVE-2015-2613.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2015:1319-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here