SUSE-SU-2016:1299-1

Source
https://www.suse.com/support/update/announcement/2016/suse-su-20161299-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2016:1299-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2016:1299-1
Related
  • CVE-2016-0264
  • CVE-2016-0363
  • CVE-2016-0376
  • CVE-2016-0686
  • CVE-2016-0687
  • CVE-2016-3422
  • CVE-2016-3426
  • CVE-2016-3427
  • CVE-2016-3443
  • CVE-2016-3449
Published
2016-05-13T10:21:44Z
Modified
2016-05-13T10:21:44Z
Summary
Security update for java-1_7_1-ibm
Details

This IBM Java 1.7.1 SR3 FP40 release fixes the following issues:

Security issues fixed: - CVE-2016-0264: buffer overflow vulnerability in the IBM JVM (bsc#977648) - CVE-2016-0363: insecure use of invoke method in CORBA component, incorrect CVE-2013-3009 fix (bsc#977650) - CVE-2016-0376: insecure deserialization in CORBA, incorrect CVE-2013-5456 fix (bsc#977646) - The following CVEs got also fixed during this update. (bsc#979252) CVE-2016-3443, CVE-2016-0687, CVE-2016-0686, CVE-2016-3427, CVE-2016-3449, CVE-2016-3422, CVE-2016-3426

References

Affected packages

SUSE:Linux Enterprise Software Development Kit 12 / java-1_7_1-ibm

Package

Name
java-1_7_1-ibm
Purl
pkg:rpm/suse/java-1_7_1-ibm&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.7.1_sr3.40-25.1

Ecosystem specific

{
    "binaries": [
        {
            "java-1_7_1-ibm-devel": "1.7.1_sr3.40-25.1"
        }
    ]
}

SUSE:Linux Enterprise Software Development Kit 12 SP1 / java-1_7_1-ibm

Package

Name
java-1_7_1-ibm
Purl
pkg:rpm/suse/java-1_7_1-ibm&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.7.1_sr3.40-25.1

Ecosystem specific

{
    "binaries": [
        {
            "java-1_7_1-ibm-devel": "1.7.1_sr3.40-25.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 / java-1_7_1-ibm

Package

Name
java-1_7_1-ibm
Purl
pkg:rpm/suse/java-1_7_1-ibm&distro=SUSE%20Linux%20Enterprise%20Server%2012

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.7.1_sr3.40-25.1

Ecosystem specific

{
    "binaries": [
        {
            "java-1_7_1-ibm-alsa": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm-jdbc": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm-plugin": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm": "1.7.1_sr3.40-25.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 / java-1_7_1-ibm

Package

Name
java-1_7_1-ibm
Purl
pkg:rpm/suse/java-1_7_1-ibm&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.7.1_sr3.40-25.1

Ecosystem specific

{
    "binaries": [
        {
            "java-1_7_1-ibm-alsa": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm-jdbc": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm-plugin": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm": "1.7.1_sr3.40-25.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP1 / java-1_7_1-ibm

Package

Name
java-1_7_1-ibm
Purl
pkg:rpm/suse/java-1_7_1-ibm&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.7.1_sr3.40-25.1

Ecosystem specific

{
    "binaries": [
        {
            "java-1_7_1-ibm-alsa": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm-jdbc": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm-plugin": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm": "1.7.1_sr3.40-25.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP1 / java-1_7_1-ibm

Package

Name
java-1_7_1-ibm
Purl
pkg:rpm/suse/java-1_7_1-ibm&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.7.1_sr3.40-25.1

Ecosystem specific

{
    "binaries": [
        {
            "java-1_7_1-ibm-alsa": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm-jdbc": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm-plugin": "1.7.1_sr3.40-25.1",
            "java-1_7_1-ibm": "1.7.1_sr3.40-25.1"
        }
    ]
}