Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

SUSE: 2016:1388-1 Important: IBM Java 1.6.0 Buffer Overflow

suse
Calendar Grey May 24, 2016
Dist Suse Esm H88
IBM has released an update for Java version 1.6.0, addressing 10 vulnerabilities including a critical buffer overflow, thereby improving the security framework for SUSE Linux systems.
An update that fixes 10 vulnerabilities is now available

Summary

This IBM Java 1.6.0 SR16 FP25 release fixes the following issues: Security issues fixed: * CVE-2016-0264: buffer overflow vulnerability in the IBM JVM (bsc#977648) * CVE-2016-0363: insecure use of invoke method in CORBA component, incorrect CVE-2013-3009 fix (bsc#977650) * CVE-2016-0376: insecure deserialization in CORBA, incorrect CVE-2013-5456 fix (bsc#977646) * The following CVEs got also fixed during this update. (bsc#979252) CVE-2016-3443, CVE-2016-0687, CVE-2016-0686, CVE-2016-3427, CVE-2016-3449, CVE-2016-3422, CVE-2016-3426 Security Issues: * CVE-2016-0376 * CVE-2016-0363 * CVE-2016-0264

References

#977646 #977648 #977650 #979252

Cross- CVE-2016-0264 CVE-2016-0363 CVE-2016-0376

CVE-2016-0686 CVE-2016-0687 CVE-2016-3422

CVE-2016-3426 CVE-2016-3427 CVE-2016-3443

CVE-2016-3449

Affected Products:

SUSE Linux Enterprise Server 10 SP4 LTSS

https://www.suse.com/security/cve/CVE-2016-0264.html

https://www.suse.com/security/cve/CVE-2016-0363.html

https://www.suse.com/security/cve/CVE-2016-0376.html

https://www.suse.com/security/cve/CVE-2016-0686.html

https://www.suse.com/security/cve/CVE-2016-0687.html

https://www.suse.com/security/cve/CVE-2016-3422.html

https://www.suse.com/security/cve/CVE-2016-3426.html

https://www.suse.com/security/cve/CVE-2016-3427.html

https://www.suse.com/security/cve/CVE-2016-3443.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2016:1388-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here