SuSE 10 Security Update : IBM Java 5 (ZYPP Patch Number 5662)

High Nessus Plugin ID 34485


The remote SuSE 10 host is missing a security-related patch.


IBM Java 5 was updated to SR8a to fix a security issue :

- A vulnerability in the Java Management Extensions (JMX) agent when local monitoring is enabled, allowed remote attackers to 'perform unauthorized operations'.

This update also includes new timezone data and fixes missing .systemPrefs


Apply ZYPP patch number 5662.

See Also

Plugin Details

Severity: High

ID: 34485

File Name: suse_java-1_5_0-ibm-5662.nasl

Version: Revision: 1.15

Type: local

Agent: unix

Published: 2008/10/24

Updated: 2012/05/17

Dependencies: 12634

Risk Information

Risk Factor: High

CVSS v2.0

Base Score: 9.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/o:suse:suse_linux

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Patch Publication Date: 2008/10/07

Reference Information

CVE: CVE-2008-3103

CWE: 264