Amazon Linux AMI : java-1.6.0-openjdk Multiple Vulnerabilities (ALAS-2012-119)

The remote Amazon Linux AMI host is missing a security update.

It was discovered that the Beans component in OpenJDK did not perform
permission checks properly. An untrusted Java application or applet
could use this flaw to use classes from restricted packages, allowing
it to bypass Java sandbox restrictions. (CVE-2012-1682)

A hardening fix was applied to the AWT component in OpenJDK, removing
functionality from the restricted SunToolkit class that was used in
combination with other flaws to bypass Java sandbox restrictions.

Run 'yum update java-1.6.0-openjdk' to update your system.

Critical / CVSS Base Score : 10.0

