Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.851107
Kategorie:SuSE Local Security Checks
Titel:SUSE: Security Advisory for OpenJDK (SUSE-SU-2014:0639-1)
Zusammenfassung:The remote host is missing an update for the 'OpenJDK'; package(s) announced via the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'OpenJDK'
package(s) announced via the referenced advisory.

Vulnerability Insight:
This java-1_7_0-openjdk update to version 2.4.7 fixes the following
security and non-security issues:

*

Security fixes

o S8023046: Enhance splashscreen support o S8025005: Enhance
CORBA initializations o S8025010, CVE-2014-2412: Enhance AWT contexts o
S8025030, CVE-2014-2414: Enhance stream handling o S8025152,
CVE-2014-0458: Enhance activation set up o S8026067: Enhance signed jar
verification o S8026163, CVE-2014-2427: Enhance media provisioning o
S8026188, CVE-2014-2423: Enhance envelope factory o S8026200: Enhance
RowSet Factory o S8026716, CVE-2014-2402: (aio) Enhance asynchronous
channel handling o S8026736, CVE-2014-2398: Enhance Javadoc pages o
S8026797, CVE-2014-0451: Enhance data transfers o S8026801, CVE-2014-0452:
Enhance endpoint addressing o S8027766, CVE-2014-0453: Enhance RSA
processing o S8027775: Enhance ICU code. o S8027841, CVE-2014-0429:
Enhance pixel manipulations o S8028385: Enhance RowSet Factory o S8029282,
CVE-2014-2403: Enhance CharInfo set up o S8029286: Enhance subject
delegation o S8029699: Update Poller demo o S8029730: Improve audio device
additions o S8029735: Enhance service mgmt natives o S8029740,
CVE-2014-0446: Enhance handling of loggers o S8029745, CVE-2014-0454:
Enhance algorithm checking o S8029750: Enhance LCMS color processing
(in-tree LCMS) o S8029760, CVE-2013-6629: Enhance AWT image libraries
(in-tree libjpeg) o S8029844, CVE-2014-0455: Enhance argument validation o
S8029854, CVE-2014-2421: Enhance JPEG decodings o S8029858, CVE-2014-0456:
Enhance array copies o S8030731, CVE-2014-0460: Improve name service
robustness o S8031330: Refactor ObjectFactory o S8031335, CVE-2014-0459:
Better color profiling (in-tree LCMS) o S8031352, CVE-2013-6954: Enhance
PNG handling (in-tree libpng) o S8031394, CVE-2014-0457: (sl) Fix
exception handling in ServiceLoader o S8031395: Enhance LDAP processing o
S8032686, CVE-2014-2413: Issues with method invoke o S8033618,
CVE-2014-1876: Correct logging output o S8034926, CVE-2014-2397: Attribute
classes properly o S8036794, CVE-2014-0461: Manage JavaScript instances
*

Backports

o S8004145: New improved hgforest.sh, ctrl-c now properly
terminates mercurial processes. o S8007625: race with nested repos in
/common/bin/hgforest.sh o S8011178: improve common/bin/hgforest.sh python
detection (MacOS) o S8011342: hgforest.sh:'python --version' not
supported on older python o S8011350: hgforest.sh uses non-POSIX sh
features that may fail with some shells o S8024200: handle hg wrapper with
space after #! o S8025796: h ...

Description truncated, please see the referenced URL(s) for more information.

Affected Software/OS:
OpenJDK on SUSE Linux Enterprise Desktop 11 SP3

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2013-6629
BugTraq ID: 63676
http://www.securityfocus.com/bid/63676
Debian Security Information: DSA-2799 (Google Search)
http://www.debian.org/security/2013/dsa-2799
http://lists.fedoraproject.org/pipermail/package-announce/2013-December/123437.html
http://lists.fedoraproject.org/pipermail/package-announce/2014-January/125470.html
http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124108.html
http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124257.html
http://archives.neohapsis.com/archives/fulldisclosure/2013-11/0080.html
http://security.gentoo.org/glsa/glsa-201406-32.xml
https://security.gentoo.org/glsa/201606-03
HPdes Security Advisory: HPSBUX03091
http://marc.info/?l=bugtraq&m=140852886808946&w=2
HPdes Security Advisory: HPSBUX03092
http://marc.info/?l=bugtraq&m=140852974709252&w=2
HPdes Security Advisory: SSRT101667
HPdes Security Advisory: SSRT101668
http://www.mandriva.com/security/advisories?name=MDVSA-2013:273
RedHat Security Advisories: RHSA-2013:1803
http://rhn.redhat.com/errata/RHSA-2013-1803.html
RedHat Security Advisories: RHSA-2013:1804
http://rhn.redhat.com/errata/RHSA-2013-1804.html
RedHat Security Advisories: RHSA-2014:0413
https://access.redhat.com/errata/RHSA-2014:0413
RedHat Security Advisories: RHSA-2014:0414
https://access.redhat.com/errata/RHSA-2014:0414
http://www.securitytracker.com/id/1029470
http://www.securitytracker.com/id/1029476
http://secunia.com/advisories/56175
http://secunia.com/advisories/58974
http://secunia.com/advisories/59058
SuSE Security Announcement: openSUSE-SU-2013:1776 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-11/msg00025.html
SuSE Security Announcement: openSUSE-SU-2013:1777 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-11/msg00026.html
SuSE Security Announcement: openSUSE-SU-2013:1861 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-12/msg00002.html
SuSE Security Announcement: openSUSE-SU-2013:1916 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-12/msg00085.html
SuSE Security Announcement: openSUSE-SU-2013:1917 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-12/msg00086.html
SuSE Security Announcement: openSUSE-SU-2013:1918 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-12/msg00087.html
SuSE Security Announcement: openSUSE-SU-2013:1957 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-12/msg00119.html
SuSE Security Announcement: openSUSE-SU-2013:1958 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-12/msg00120.html
SuSE Security Announcement: openSUSE-SU-2013:1959 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-12/msg00121.html
SuSE Security Announcement: openSUSE-SU-2014:0008 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-01/msg00002.html
SuSE Security Announcement: openSUSE-SU-2014:0065 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-01/msg00042.html
http://www.ubuntu.com/usn/USN-2052-1
http://www.ubuntu.com/usn/USN-2053-1
http://www.ubuntu.com/usn/USN-2060-1
Common Vulnerability Exposure (CVE) ID: CVE-2013-6954
BugTraq ID: 64493
http://www.securityfocus.com/bid/64493
CERT/CC vulnerability note: VU#650142
http://www.kb.cert.org/vuls/id/650142
http://lists.fedoraproject.org/pipermail/package-announce/2014-February/127947.html
http://lists.fedoraproject.org/pipermail/package-announce/2014-February/128114.html
http://lists.fedoraproject.org/pipermail/package-announce/2014-February/128099.html
http://lists.fedoraproject.org/pipermail/package-announce/2014-February/127952.html
http://lists.fedoraproject.org/pipermail/package-announce/2014-February/128098.html
http://www.mandriva.com/security/advisories?name=MDVSA-2014:035
http://www.libpng.org/pub/png/libpng.html
SuSE Security Announcement: openSUSE-SU-2014:0100 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-01/msg00071.html
Common Vulnerability Exposure (CVE) ID: CVE-2014-0429
BugTraq ID: 66856
http://www.securityfocus.com/bid/66856
Debian Security Information: DSA-2912 (Google Search)
http://www.debian.org/security/2014/dsa-2912
http://security.gentoo.org/glsa/glsa-201502-12.xml
RedHat Security Advisories: RHSA-2014:0675
http://rhn.redhat.com/errata/RHSA-2014-0675.html
RedHat Security Advisories: RHSA-2014:0685
http://rhn.redhat.com/errata/RHSA-2014-0685.html
http://secunia.com/advisories/58415
http://www.ubuntu.com/usn/USN-2187-1
http://www.ubuntu.com/usn/USN-2191-1
Common Vulnerability Exposure (CVE) ID: CVE-2014-0446
BugTraq ID: 66903
http://www.securityfocus.com/bid/66903
Common Vulnerability Exposure (CVE) ID: CVE-2014-0451
BugTraq ID: 66879
http://www.securityfocus.com/bid/66879
Common Vulnerability Exposure (CVE) ID: CVE-2014-0452
BugTraq ID: 66891
http://www.securityfocus.com/bid/66891
Common Vulnerability Exposure (CVE) ID: CVE-2014-0453
BugTraq ID: 66914
http://www.securityfocus.com/bid/66914
http://secunia.com/advisories/59022
http://secunia.com/advisories/59023
http://secunia.com/advisories/59071
http://secunia.com/advisories/59082
http://secunia.com/advisories/59104
http://secunia.com/advisories/59194
http://secunia.com/advisories/59250
http://secunia.com/advisories/59255
http://secunia.com/advisories/59307
http://secunia.com/advisories/59324
http://secunia.com/advisories/59436
http://secunia.com/advisories/59438
http://secunia.com/advisories/59653
http://secunia.com/advisories/59675
http://secunia.com/advisories/59722
http://secunia.com/advisories/59733
http://secunia.com/advisories/60003
http://secunia.com/advisories/60111
http://secunia.com/advisories/60117
http://secunia.com/advisories/60498
http://secunia.com/advisories/60574
http://secunia.com/advisories/60580
http://secunia.com/advisories/61050
http://secunia.com/advisories/61264
Common Vulnerability Exposure (CVE) ID: CVE-2014-0454
BugTraq ID: 66905
http://www.securityfocus.com/bid/66905
Common Vulnerability Exposure (CVE) ID: CVE-2014-0455
BugTraq ID: 66899
http://www.securityfocus.com/bid/66899
Common Vulnerability Exposure (CVE) ID: CVE-2014-0456
BugTraq ID: 66877
http://www.securityfocus.com/bid/66877
Common Vulnerability Exposure (CVE) ID: CVE-2014-0457
BugTraq ID: 66866
http://www.securityfocus.com/bid/66866
Common Vulnerability Exposure (CVE) ID: CVE-2014-0458
BugTraq ID: 66883
http://www.securityfocus.com/bid/66883
Common Vulnerability Exposure (CVE) ID: CVE-2014-0459
BugTraq ID: 66910
http://www.securityfocus.com/bid/66910
Common Vulnerability Exposure (CVE) ID: CVE-2014-0460
BugTraq ID: 66916
http://www.securityfocus.com/bid/66916
http://secunia.com/advisories/59516
http://secunia.com/advisories/59642
http://secunia.com/advisories/59704
http://secunia.com/advisories/59705
http://secunia.com/advisories/59706
Common Vulnerability Exposure (CVE) ID: CVE-2014-0461
BugTraq ID: 66902
http://www.securityfocus.com/bid/66902
Common Vulnerability Exposure (CVE) ID: CVE-2014-1876
BugTraq ID: 65568
http://www.securityfocus.com/bid/65568
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=737562
https://bugzilla.redhat.com/show_bug.cgi?id=1060907
http://seclists.org/oss-sec/2014/q1/242
http://seclists.org/oss-sec/2014/q1/285
http://osvdb.org/102808
Common Vulnerability Exposure (CVE) ID: CVE-2014-2397
BugTraq ID: 66893
http://www.securityfocus.com/bid/66893
Common Vulnerability Exposure (CVE) ID: CVE-2014-2398
BugTraq ID: 66920
http://www.securityfocus.com/bid/66920
Common Vulnerability Exposure (CVE) ID: CVE-2014-2402
BugTraq ID: 66898
http://www.securityfocus.com/bid/66898
Common Vulnerability Exposure (CVE) ID: CVE-2014-2403
BugTraq ID: 66918
http://www.securityfocus.com/bid/66918
Common Vulnerability Exposure (CVE) ID: CVE-2014-2412
BugTraq ID: 66873
http://www.securityfocus.com/bid/66873
Common Vulnerability Exposure (CVE) ID: CVE-2014-2413
BugTraq ID: 66917
http://www.securityfocus.com/bid/66917
Common Vulnerability Exposure (CVE) ID: CVE-2014-2414
BugTraq ID: 66894
http://www.securityfocus.com/bid/66894
Common Vulnerability Exposure (CVE) ID: CVE-2014-2421
BugTraq ID: 66881
http://www.securityfocus.com/bid/66881
Common Vulnerability Exposure (CVE) ID: CVE-2014-2423
BugTraq ID: 66887
http://www.securityfocus.com/bid/66887
Common Vulnerability Exposure (CVE) ID: CVE-2014-2427
BugTraq ID: 66909
http://www.securityfocus.com/bid/66909
CopyrightCopyright (C) 2015 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.