SUSE-SU-2016:1303-1

Source
https://www.suse.com/support/update/announcement/2016/suse-su-20161303-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2016:1303-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2016:1303-1
Related
  • CVE-2016-0264
  • CVE-2016-0363
  • CVE-2016-0376
  • CVE-2016-0686
  • CVE-2016-0687
  • CVE-2016-3422
  • CVE-2016-3426
  • CVE-2016-3427
  • CVE-2016-3443
  • CVE-2016-3449
Published
2016-05-13T15:09:19Z
Modified
2016-05-13T15:09:19Z
Summary
Security update for java-1_6_0-ibm
Details

This IBM Java 1.6.0 SR16 FP25 release fixes the following issues:

Security issues fixed: - CVE-2016-0264: buffer overflow vulnerability in the IBM JVM (bsc#977648) - CVE-2016-0363: insecure use of invoke method in CORBA component, incorrect CVE-2013-3009 fix (bsc#977650) - CVE-2016-0376: insecure deserialization in CORBA, incorrect CVE-2013-5456 fix (bsc#977646) - The following CVEs got also fixed during this update. (bsc#979252) CVE-2016-3443, CVE-2016-0687, CVE-2016-0686, CVE-2016-3427, CVE-2016-3449, CVE-2016-3422, CVE-2016-3426

References

Affected packages

SUSE:Linux Enterprise Module for Legacy 12 / java-1_6_0-ibm

Package

Name
java-1_6_0-ibm
Purl
purl:rpm/suse/java-1_6_0-ibm&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Legacy%2012

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.6.0_sr16.25-34.1

Ecosystem specific

{
    "binaries": [
        {
            "java-1_6_0-ibm-jdbc": "1.6.0_sr16.25-34.1",
            "java-1_6_0-ibm-fonts": "1.6.0_sr16.25-34.1",
            "java-1_6_0-ibm": "1.6.0_sr16.25-34.1",
            "java-1_6_0-ibm-plugin": "1.6.0_sr16.25-34.1"
        }
    ]
}