SuSE 10 Security Update : IBM Java (ZYPP Patch Number 8284)

critical Nessus Plugin ID 62381

Synopsis

The remote SuSE 10 host is missing a security-related patch.

Description

IBM Java 1.5.0 was updated to SR11 which fixes bugs and security issues.

http://www.ibm.com/developerworks/java/jdk/alerts/

Also three bugs have been fixed :

- fix bnc#771808: create symlink /usr/bin/javaws properly

- fix bnc#666744: mark all configuration files as %config(noreplace)

- fix bnc#773021: add code removing fonts symlink to baselibs.conf

Solution

Apply ZYPP patch number 8284.

See Also

http://support.novell.com/security/cve/CVE-2012-0551.html

http://support.novell.com/security/cve/CVE-2012-1713.html

http://support.novell.com/security/cve/CVE-2012-1716.html

http://support.novell.com/security/cve/CVE-2012-1717.html

http://support.novell.com/security/cve/CVE-2012-1718.html

http://support.novell.com/security/cve/CVE-2012-1719.html

http://support.novell.com/security/cve/CVE-2012-1721.html

http://support.novell.com/security/cve/CVE-2012-1722.html

http://support.novell.com/security/cve/CVE-2012-1725.html

Plugin Details

Severity: Critical

ID: 62381

File Name: suse_java-1_6_0-ibm-8284.nasl

Version: 1.5

Type: local

Agent: unix

Published: 9/29/2012

Updated: 1/19/2021

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Critical

Score: 9.0

CVSS v2

Risk Factor: Critical

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/o:suse:suse_linux

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 9/7/2012

Vulnerability Publication Date: 5/3/2012

Reference Information

CVE: CVE-2012-0551, CVE-2012-1713, CVE-2012-1716, CVE-2012-1717, CVE-2012-1718, CVE-2012-1719, CVE-2012-1721, CVE-2012-1722, CVE-2012-1725