Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

SUSE: 2018:1738-1 Important: Java-1_8_0-ibm Security Patch

suse
Calendar Grey June 19, 2018
Scroller Suse
SUSE has released a security update for java-1_8_0-ibm that resolves critical vulnerabilities and issues. Learn more about the specific patches today!
An update that fixes 13 vulnerabilities is now available

Summary

IBM Java was updated to version 8.0.5.15 [bsc#1093311, bsc#1085449] Security fixes: - CVE-2018-2826 CVE-2018-2825 CVE-2018-2814 CVE-2018-2794 CVE-2018-2783 CVE-2018-2799 CVE-2018-2798 CVE-2018-2797 CVE-2018-2796 CVE-2018-2795 CVE-2018-2800 CVE-2018-2790 CVE-2018-1417 - Removed translations in the java-1_8_0-ibm-devel-32bit package as they conflict with those in java-1_8_0-ibm-devel. Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE OpenStack Cloud 7: zypper in -t patch SUSE-OpenStack-Cloud-7-2018-1176=1 - SUSE Linux Enterprise Software Development Kit 12-SP3: zypper in -t patch SUSE-SLE-SDK-12-SP3-2018-1176=1

References

#1085449 #1093311

Cross- CVE-2018-1417 CVE-2018-2783 CVE-2018-2790

CVE-2018-2794 CVE-2018-2795 CVE-2018-2796

CVE-2018-2797 CVE-2018-2798 CVE-2018-2799

CVE-2018-2800 CVE-2018-2814 CVE-2018-2825

CVE-2018-2826

Affected Products:

SUSE OpenStack Cloud 7

SUSE Linux Enterprise Software Development Kit 12-SP3

SUSE Linux Enterprise Server for SAP 12-SP2

SUSE Linux Enterprise Server for SAP 12-SP1

SUSE Linux Enterprise Server 12-SP3

SUSE Linux Enterprise Server 12-SP2-LTSS

SUSE Linux Enterprise Server 12-SP1-LTSS

SUSE Enterprise Storage 4

https://www.suse.com/security/cve/CVE-2018-1417.html

https://www.suse.com/security/cve/CVE-2018-2783.html

https://www.suse.com/security/cve/CVE-2018-2790.html

https://www.suse.com/security/cve/CVE-2018-2794.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2018:1738-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.