SuSE 10 Security Update : IBM Java (ZYPP Patch Number 8283)

critical Nessus Plugin ID 62177

Synopsis

The remote SuSE 10 host is missing a security-related patch.

Description

IBM Java 1.5.0 was updated to SR14 fixing bugs and security issues.

http://www.ibm.com/developerworks/java/jdk/alerts/

Also three bugs have been fixed :

- fix bnc#771808: create symlink /usr/bin/javaws properly

- fix bnc#666744: mark all configuration files as %config(noreplace)

- fix bnc#773021: add code removing fonts symlink to baselibs.conf

Solution

Apply ZYPP patch number 8283.

See Also

http://support.novell.com/security/cve/CVE-2012-1713.html

http://support.novell.com/security/cve/CVE-2012-1716.html

http://support.novell.com/security/cve/CVE-2012-1717.html

http://support.novell.com/security/cve/CVE-2012-1718.html

http://support.novell.com/security/cve/CVE-2012-1719.html

http://support.novell.com/security/cve/CVE-2012-1725.html

Plugin Details

Severity: Critical

ID: 62177

File Name: suse_java-1_5_0-ibm-8283.nasl

Version: 1.5

Type: local

Agent: unix

Published: 9/18/2012

Updated: 1/19/2021

Supported Sensors: Nessus Agent, Continuous Assessment, Nessus

Risk Information

VPR

Risk Factor: Critical

Score: 9.0

CVSS v2

Risk Factor: Critical

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/o:suse:suse_linux

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 9/7/2012

Vulnerability Publication Date: 6/16/2012

Reference Information

CVE: CVE-2012-1713, CVE-2012-1716, CVE-2012-1717, CVE-2012-1718, CVE-2012-1719, CVE-2012-1725