SUSE Security Update: Security update for IBM Java ______________________________________________________________________________
Announcement ID: SUSE-SU-2012:1177-2 Rating: important References: #666744 #778629 Cross-References: CVE-2012-1713 CVE-2012-1717 CVE-2012-1718 CVE-2012-1719 Affected Products: SUSE Linux Enterprise Java 11 SP1 ______________________________________________________________________________
An update that fixes four vulnerabilities is now available.
Description:
IBM Java 1.4.2 was updated to SR13-FP13 fixing bugs and security issues.
http://www.ibm.com/developerworks/java/jdk/alerts/ http://www.ibm.com/developerworks/java/jdk/alerts/
Also one bug has been fixed:
* fix bnc#771808: create symlink /usr/bin/javaws properly
Security Issue reference:
* CVE-2012-1717 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1717
* CVE-2012-1713 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1713
* CVE-2012-1719 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1719
* CVE-2012-1718 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1718
Patch Instructions:
To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product:
- SUSE Linux Enterprise Java 11 SP1:
zypper in -t patch slejsp1-java-1_4_2-ibm-6790
To bring your system up-to-date, use "zypper patch".
Package List:
- SUSE Linux Enterprise Java 11 SP1 (i586 ia64 ppc64 s390x x86_64):
java-1_4_2-ibm-1.4.2_sr13.13-0.2.1
- SUSE Linux Enterprise Java 11 SP1 (i586):
java-1_4_2-ibm-jdbc-1.4.2_sr13.13-0.2.1 java-1_4_2-ibm-plugin-1.4.2_sr13.13-0.2.1
References:
http://support.novell.com/security/cve/CVE-2012-1713.html http://support.novell.com/security/cve/CVE-2012-1717.html http://support.novell.com/security/cve/CVE-2012-1718.html http://support.novell.com/security/cve/CVE-2012-1719.html https://bugzilla.novell.com/666744 https://bugzilla.novell.com/778629 http://download.novell.com/patch/finder/?keywords=88f0abae38503a32feb6c129bd...