Security update for IBM Java 1.7.0

SUSE Security Update: Security update for IBM Java 1.7.0
Announcement ID: SUSE-SU-2014:1037-1
Rating: moderate
References: #891701
Affected Products:
  • SUSE Linux Enterprise Software Development Kit 11 SP3
  • SUSE Linux Enterprise Server 11 SP3 for VMware
  • SUSE Linux Enterprise Server 11 SP3
  • SUSE Linux Enterprise Java 11 SP3

  • An update that fixes 14 vulnerabilities is now available.

    Description:


    IBM Java 1.7.0 has been updated to fix 14 security issues.

    Security Issues:

    * CVE-2014-4227

    * CVE-2014-4262

    * CVE-2014-4219

    * CVE-2014-4209

    * CVE-2014-4220

    * CVE-2014-4268

    * CVE-2014-4218

    * CVE-2014-4252

    * CVE-2014-4266

    * CVE-2014-4265

    * CVE-2014-4221

    * CVE-2014-4263

    * CVE-2014-4244

    * CVE-2014-4208

    Patch Instructions:

    To install this SUSE Security Update use YaST online_update.
    Alternatively you can run the command listed for your product:

    • SUSE Linux Enterprise Software Development Kit 11 SP3:
      zypper in -t patch sdksp3-java-1_7_0-ibm-9616
    • SUSE Linux Enterprise Server 11 SP3 for VMware:
      zypper in -t patch slessp3-java-1_7_0-ibm-9616
    • SUSE Linux Enterprise Server 11 SP3:
      zypper in -t patch slessp3-java-1_7_0-ibm-9616
    • SUSE Linux Enterprise Java 11 SP3:
      zypper in -t patch slejsp3-java-1_7_0-ibm-9616

    To bring your system up-to-date, use "zypper patch".

    Package List:

    • SUSE Linux Enterprise Software Development Kit 11 SP3 (i586 ppc64 s390x x86_64):
      • java-1_7_0-ibm-devel-1.7.0_sr7.1-0.5.1
    • SUSE Linux Enterprise Server 11 SP3 for VMware (i586 x86_64):
      • java-1_7_0-ibm-1.7.0_sr7.1-0.5.1
      • java-1_7_0-ibm-alsa-1.7.0_sr7.1-0.5.1
      • java-1_7_0-ibm-jdbc-1.7.0_sr7.1-0.5.1
      • java-1_7_0-ibm-plugin-1.7.0_sr7.1-0.5.1
    • SUSE Linux Enterprise Server 11 SP3 (i586 ppc64 s390x x86_64):
      • java-1_7_0-ibm-1.7.0_sr7.1-0.5.1
      • java-1_7_0-ibm-jdbc-1.7.0_sr7.1-0.5.1
    • SUSE Linux Enterprise Server 11 SP3 (i586 x86_64):
      • java-1_7_0-ibm-alsa-1.7.0_sr7.1-0.5.1
      • java-1_7_0-ibm-plugin-1.7.0_sr7.1-0.5.1
    • SUSE Linux Enterprise Java 11 SP3 (i586 ppc64 s390x x86_64):
      • java-1_7_0-ibm-1.7.0_sr7.1-0.5.1
      • java-1_7_0-ibm-devel-1.7.0_sr7.1-0.5.1
      • java-1_7_0-ibm-jdbc-1.7.0_sr7.1-0.5.1
    • SUSE Linux Enterprise Java 11 SP3 (i586 x86_64):
      • java-1_7_0-ibm-alsa-1.7.0_sr7.1-0.5.1
      • java-1_7_0-ibm-plugin-1.7.0_sr7.1-0.5.1

    References:

    • http://support.novell.com/security/cve/CVE-2014-4208.html
    • http://support.novell.com/security/cve/CVE-2014-4209.html
    • http://support.novell.com/security/cve/CVE-2014-4218.html
    • http://support.novell.com/security/cve/CVE-2014-4219.html
    • http://support.novell.com/security/cve/CVE-2014-4220.html
    • http://support.novell.com/security/cve/CVE-2014-4221.html
    • http://support.novell.com/security/cve/CVE-2014-4227.html
    • http://support.novell.com/security/cve/CVE-2014-4244.html
    • http://support.novell.com/security/cve/CVE-2014-4252.html
    • http://support.novell.com/security/cve/CVE-2014-4262.html
    • http://support.novell.com/security/cve/CVE-2014-4263.html
    • http://support.novell.com/security/cve/CVE-2014-4265.html
    • http://support.novell.com/security/cve/CVE-2014-4266.html
    • http://support.novell.com/security/cve/CVE-2014-4268.html
    • https://bugzilla.novell.com/891701
    • http://download.suse.com/patch/finder/?keywords=39767f436d50cb197ecce17413b1ad0c