Description: | Description: The remote host is missing an update to java-1.6.0-openjdk announced via advisory FEDORA-2011-8020.
The OpenJDK runtime environment.
Update Information:
http://blog.fuseyism.com/index.php/2011/06/08/icedtea6-188-198-and-1102-released/
References:
[ 1 ] Bug #706139 - CVE-2011-0862 OpenJDK: integer overflows in JPEGImageReader and font SunLayoutEngine (2D, 7013519) https://bugzilla.redhat.com/show_bug.cgi?id=706139 [ 2 ] Bug #706245 - CVE-2011-0864 OpenJDK: JVM memory corruption via certain bytecode (HotSpot, 7020373) https://bugzilla.redhat.com/show_bug.cgi?id=706245 [ 3 ] Bug #706106 - CVE-2011-0865 OpenJDK: Deserialization allows creation of mutable SignedObject (Deserialization, 6618658) https://bugzilla.redhat.com/show_bug.cgi?id=706106 [ 4 ] Bug #706153 - CVE-2011-0867 OpenJDK: NetworkInterface information leak (Networking, 7013969) https://bugzilla.redhat.com/show_bug.cgi?id=706153 [ 5 ] Bug #706241 - CVE-2011-0868 OpenJDK: incorrect numeric type conversion in TransformHelper (2D, 7016495) https://bugzilla.redhat.com/show_bug.cgi?id=706241 [ 6 ] Bug #706234 - CVE-2011-0869 OpenJDK: unprivileged proxy settings change via SOAPConnection (SAAJ, 7013971) https://bugzilla.redhat.com/show_bug.cgi?id=706234 [ 7 ] Bug #706248 - CVE-2011-0871 OpenJDK: MediaTracker created Component instances with unnecessary privileges (Swing, 7020198) https://bugzilla.redhat.com/show_bug.cgi?id=706248
Solution: Apply the appropriate updates.
This update can be installed with the yum update program. Use su -c 'yum update java-1.6.0-openjdk' at the command line. For more information, refer to Managing Software with yum, available at http://docs.fedoraproject.org/yum/.
http://www.securityspace.com/smysecure/catid.html?in=FEDORA-2011-8020
Risk factor : Critical
CVSS Score: 10.0
|