|
Slackware update for jdk and jre
|
|
Secunia Advisory:
|
SA26645
|
|
|
Release Date:
|
2007-09-03
|
|
Popularity:
|
5,186 views
|
|
|
Critical:
|
 Highly critical
|
|
Impact:
|
Security Bypass Cross Site Scripting DoS System access
|
|
Where:
|
From remote
|
|
Solution Status:
|
Vendor Patch
|
|
| OS: | Slackware Linux 10.0 Slackware Linux 11.0 Slackware Linux 8.x Slackware Linux 9.0 Slackware Linux 9.1
|
|
|
Subscribe:
|
Instant alerts on relevant vulnerabilities
|
|
| CVE reference: | CVE-2007-0234 CVE-2007-0243 CVE-2007-2788 CVE-2007-2789 CVE-2007-3004 CVE-2007-3005 CVE-2007-3503 CVE-2007-3698 CVE-2007-3922
|
|
Description: Slackware has issued an update for jdk and jre. This fixes some vulnerabilities and a security issue, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, cause a DoS (Denial of Service), or compromise a vulnerable system.
Note: Reportedly this update fixes all Sun JRE/JDK vulnerabilities reported in Java 2 Platform Standard Edition Development Kit prior to version 6.0 update 2 or Java 2 Platform Standard Edition Runtime Environment prior to version 6.0 update 2.
For more information check e.g.:
SA23757
SA25295
SA25769
SA26015
Solution: Apply updated packages for Slackware 8.1, 9.0, 9.1, 10.0, 10.1, 10.2, 11.0, and 12.0:
ftp://ftp.slackware.com/pub/slackware...0/patches/packages/jre-6u2-i586-1.tgz
ftp://ftp.slackware.com/pub/slackware...e-12.0/extra/jdk-6/jdk-6u2-i586-1.tgz
Original Advisory: http://slackware.com/security/viewer....=2007&m=slackware-security.486841
Other References: SA23757:
http://secunia.com/advisories/23757/
SA25295:
http://secunia.com/advisories/25295/
SA25769:
http://secunia.com/advisories/25769/
SA26015:
http://secunia.com/advisories/26015/
|
|
|
Track this Secunia Advisory
|
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.
|
|
|
About this Secunia Advisory
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|