Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:
Category:Red Hat Local Security Checks
Title:RedHat Security Advisory RHSA-2010:0338
The remote host is missing updates announced in
advisory RHSA-2010:0338.

The Sun 1.5.0 Java release includes the Sun Java 5 Runtime Environment and
the Sun Java 5 Software Development Kit.

The java-1.5.0-sun packages are vulnerable to a number of security flaws
and should no longer be used. (CVE-2009-3555, CVE-2010-0082, CVE-2010-0084,
CVE-2010-0085, CVE-2010-0087, CVE-2010-0088, CVE-2010-0089, CVE-2010-0091,
CVE-2010-0092, CVE-2010-0093, CVE-2010-0094, CVE-2010-0095, CVE-2010-0837,
CVE-2010-0838, CVE-2010-0839, CVE-2010-0840, CVE-2010-0841, CVE-2010-0842,
CVE-2010-0843, CVE-2010-0844, CVE-2010-0845, CVE-2010-0846, CVE-2010-0847,
CVE-2010-0848, CVE-2010-0849)

The Sun Java SE Release family 5.0 reached its End of Service Life on
November 3, 2009. The RHSA-2009:1571 update provided the final publicly
available update of version 5.0 (Update 22). Users interested in continuing
to receive critical fixes for Sun Java SE 5.0 should contact Oracle:

An alternative to Sun Java SE 5.0 is the Java 2 Technology Edition of the
IBM Developer Kit for Linux, which is available from the Extras and
Supplementary channels on the Red Hat Network.

Applications capable of using the Java 6 runtime can be migrated to Java 6
on: OpenJDK (java-1.6.0-openjdk), an open source JDK included in Red Hat
Enterprise Linux 5, since 5.3
the IBM JDK, java-1.6.0-ibm
or the Sun JDK,

This update removes the java-1.5.0-sun packages as they have reached their
End of Service Life.

Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

Risk factor : High

CVSS Score:

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2009-3555
BugTraq ID: 36935
Bugtraq: 20091118 TLS / SSLv3 vulnerability explained (DRAFT) (Google Search)
Bugtraq: 20091124 rPSA-2009-0155-1 httpd mod_ssl (Google Search)
Bugtraq: 20091130 TLS / SSLv3 vulnerability explained (New ways to leverage the vulnerability) (Google Search)
Bugtraq: 20101207 VMSA-2010-0019 VMware ESX third party updates for Service Console (Google Search)
Bugtraq: 20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX (Google Search)
Bugtraq: 20131121 ESA-2013-077: RSA Data Protection Manager Appliance Multiple Vulnerabilities (Google Search)
Cert/CC Advisory: TA10-222A
Cert/CC Advisory: TA10-287A
CERT/CC vulnerability note: VU#120541
Cisco Security Advisory: 20091109 Transport Layer Security Renegotiation Vulnerability
Debian Security Information: DSA-1934 (Google Search)
Debian Security Information: DSA-2141 (Google Search)
Debian Security Information: DSA-3253 (Google Search)
HPdes Security Advisory: HPSBGN02562
HPdes Security Advisory: HPSBHF02706
HPdes Security Advisory: HPSBHF03293
HPdes Security Advisory: HPSBMA02534
HPdes Security Advisory: HPSBMA02547
HPdes Security Advisory: HPSBMA02568
HPdes Security Advisory: HPSBMU02759
HPdes Security Advisory: HPSBMU02799
HPdes Security Advisory: HPSBOV02683
HPdes Security Advisory: HPSBOV02762
HPdes Security Advisory: HPSBUX02482
HPdes Security Advisory: HPSBUX02498
HPdes Security Advisory: HPSBUX02517
HPdes Security Advisory: HPSBUX02524
HPdes Security Advisory: SSRT090180
HPdes Security Advisory: SSRT090208
HPdes Security Advisory: SSRT090249
HPdes Security Advisory: SSRT090264
HPdes Security Advisory: SSRT100058
HPdes Security Advisory: SSRT100089
HPdes Security Advisory: SSRT100179
HPdes Security Advisory: SSRT100219
HPdes Security Advisory: SSRT100613
HPdes Security Advisory: SSRT100817
HPdes Security Advisory: SSRT100825
HPdes Security Advisory: SSRT101846
Microsoft Security Bulletin: MS10-049
OpenBSD Security Advisory: [4.5] 010: SECURITY FIX: November 26, 2009
OpenBSD Security Advisory: [4.6] 004: SECURITY FIX: November 26, 2009
SuSE Security Announcement: SUSE-SA:2009:057 (Google Search)
SuSE Security Announcement: SUSE-SA:2010:061 (Google Search)
SuSE Security Announcement: SUSE-SR:2010:008 (Google Search)
SuSE Security Announcement: SUSE-SR:2010:011 (Google Search)
SuSE Security Announcement: SUSE-SR:2010:012 (Google Search)
SuSE Security Announcement: SUSE-SR:2010:013 (Google Search)
SuSE Security Announcement: SUSE-SR:2010:019 (Google Search)
SuSE Security Announcement: SUSE-SR:2010:024 (Google Search)
SuSE Security Announcement: SUSE-SU-2011:0847 (Google Search)
SuSE Security Announcement: openSUSE-SU-2011:0845 (Google Search)
XForce ISS Database: tls-renegotiation-weak-security(54158)
Common Vulnerability Exposure (CVE) ID: CVE-2010-0082
Common Vulnerability Exposure (CVE) ID: CVE-2010-0084
SuSE Security Announcement: SUSE-SR:2010:017 (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2010-0085
Common Vulnerability Exposure (CVE) ID: CVE-2010-0087
Common Vulnerability Exposure (CVE) ID: CVE-2010-0088
Common Vulnerability Exposure (CVE) ID: CVE-2010-0089
Common Vulnerability Exposure (CVE) ID: CVE-2010-0091
Common Vulnerability Exposure (CVE) ID: CVE-2010-0092
Common Vulnerability Exposure (CVE) ID: CVE-2010-0093
Common Vulnerability Exposure (CVE) ID: CVE-2010-0094
Bugtraq: 20100405 ZDI-10-051: Sun Java Runtime RMIConnectionImpl Privileged Context Remote Code Execution Vulnerability (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2010-0095
Common Vulnerability Exposure (CVE) ID: CVE-2010-0837
Common Vulnerability Exposure (CVE) ID: CVE-2010-0838
BugTraq ID: 39069
Bugtraq: 20100405 ZDI-10-061: Sun Java Runtime CMM readMabCurveData Remote Code Execution Vulnerability (Google Search)
XForce ISS Database: javase-javab-java2d-unspecifed(57346)
Common Vulnerability Exposure (CVE) ID: CVE-2010-0839
Common Vulnerability Exposure (CVE) ID: CVE-2010-0840
BugTraq ID: 39065
Bugtraq: 20100405 ZDI-10-056: Sun Java Runtime Environment Trusted Methods Chaining Remote Code Execution Vulnerability (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2010-0841
BugTraq ID: 39067
Bugtraq: 20100405 ZDI-10-054: Sun Java Runtime Environment JPEGImageReader stepX Remote Code Execution Vulnerability (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2010-0842
BugTraq ID: 39077
Bugtraq: 20100405 ZDI-10-060: Sun Java Runtime Environment MixerSequencer Invalid Array Index Remote Code Execution Vulnerability (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2010-0843
BugTraq ID: 39083
Bugtraq: 20100405 ZDI-10-052: Sun Java Runtime Environment XNewPtr Remote Code Execution Vulnerability (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2010-0844
Bugtraq: 20100405 ZDI-10-053: Sun Java Runtime Environment MIDI File metaEvent Remote Code Execution Vulnerability (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2010-0845
Common Vulnerability Exposure (CVE) ID: CVE-2010-0846
BugTraq ID: 39062
Bugtraq: 20100405 ZDI-10-059: Sun Java Runtime Environment JPEGImageEncoderImpl Remote Code Execution Vulnerability (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2010-0847
BugTraq ID: 39071
Common Vulnerability Exposure (CVE) ID: CVE-2010-0848
BugTraq ID: 39078
Common Vulnerability Exposure (CVE) ID: CVE-2010-0849
BugTraq ID: 39073
Bugtraq: 20100405 ZDI-10-057: Sun Java Runtime Environment JPEGImageDecoderImpl Remote Code Execution Vulnerability (Google Search)
CopyrightCopyright (c) 2010 E-Soft Inc.

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.

© 1998-2021 E-Soft Inc. All rights reserved.