[RHSA-2010:0987] java-1.6.0-ibm security and bug fix update

Severity Critical
Affected Packages 27
CVEs 23

The IBM 1.6.0 Java release includes the IBM Java 2 Runtime Environment and
the IBM Java 2 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 2 Runtime
Environment. Detailed vulnerability descriptions are linked from the IBM
"Security alerts" page, listed in the References section. (CVE-2009-3555,
CVE-2010-1321, CVE-2010-3541, CVE-2010-3548, CVE-2010-3549, CVE-2010-3550,
CVE-2010-3551, CVE-2010-3553, CVE-2010-3555, CVE-2010-3556, CVE-2010-3557,
CVE-2010-3558, CVE-2010-3560, CVE-2010-3562, CVE-2010-3563, CVE-2010-3565,
CVE-2010-3566, CVE-2010-3568, CVE-2010-3569, CVE-2010-3571, CVE-2010-3572,
CVE-2010-3573, CVE-2010-3574)

This update also fixes the following bugs:

  • An error in the java-1.6.0-ibm RPM spec file caused an incorrect path to
    be included in HtmlConverter, preventing it from running. (BZ#659716)

  • On AMD64 and Intel 64 systems, if only the 64-bit java-1.6.0-ibm packages
    were installed, IBM Java 6 Web Start was not available as an application
    that could open JNLP (Java Network Launching Protocol) files. This affected
    file management and web browser tools. Users had to manually open them with
    the "/usr/lib/jvm/jre-1.6.0-ibm.x86_64/bin/javaws" command. This update
    resolves this issue. (BZ#633341)

All users of java-1.6.0-ibm are advised to upgrade to these updated
packages, containing the IBM 1.6.0 SR9 Java release. All running instances
of IBM Java must be restarted for the update to take effect.

Package Affected Version
pkg:rpm/redhat/java-1.6.0-ibm?arch=x86_64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm?arch=s390x&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm?arch=ppc64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm?arch=i686&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-src?arch=x86_64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-src?arch=s390x&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-src?arch=ppc64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-src?arch=i686&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-plugin?arch=x86_64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-plugin?arch=i686&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-jdbc?arch=x86_64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-jdbc?arch=s390x&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-jdbc?arch=ppc64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-jdbc?arch=i686&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-javacomm?arch=x86_64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-javacomm?arch=ppc64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-javacomm?arch=i686&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=x86_64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=s390x&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=s390&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=ppc64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=ppc&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=i686&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-demo?arch=x86_64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-demo?arch=s390x&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-demo?arch=ppc64&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
pkg:rpm/redhat/java-1.6.0-ibm-demo?arch=i686&distro=redhat-6 < 1.6.0.9.0-1jpp.4.el6
ID
RHSA-2010:0987
Severity
critical
URL
https://access.redhat.com/errata/RHSA-2010:0987
Published
2010-12-15T00:00:00
(13 years ago)
Modified
2010-12-15T00:00:00
(13 years ago)
Rights
Copyright 2010 Red Hat, Inc.
Other Advisories
Source # ID Name URL
Bugzilla 533125 https://bugzilla.redhat.com/533125
Bugzilla 582466 https://bugzilla.redhat.com/582466
Bugzilla 639876 https://bugzilla.redhat.com/639876
Bugzilla 639897 https://bugzilla.redhat.com/639897
Bugzilla 639904 https://bugzilla.redhat.com/639904
Bugzilla 639909 https://bugzilla.redhat.com/639909
Bugzilla 639920 https://bugzilla.redhat.com/639920
Bugzilla 639922 https://bugzilla.redhat.com/639922
Bugzilla 639925 https://bugzilla.redhat.com/639925
Bugzilla 642167 https://bugzilla.redhat.com/642167
Bugzilla 642180 https://bugzilla.redhat.com/642180
Bugzilla 642187 https://bugzilla.redhat.com/642187
Bugzilla 642202 https://bugzilla.redhat.com/642202
Bugzilla 642215 https://bugzilla.redhat.com/642215
Bugzilla 642558 https://bugzilla.redhat.com/642558
Bugzilla 642559 https://bugzilla.redhat.com/642559
Bugzilla 642573 https://bugzilla.redhat.com/642573
Bugzilla 642576 https://bugzilla.redhat.com/642576
Bugzilla 642585 https://bugzilla.redhat.com/642585
Bugzilla 642589 https://bugzilla.redhat.com/642589
Bugzilla 642593 https://bugzilla.redhat.com/642593
Bugzilla 642611 https://bugzilla.redhat.com/642611
RHSA RHSA-2010:0987 https://access.redhat.com/errata/RHSA-2010:0987
CVE CVE-2009-3555 https://access.redhat.com/security/cve/CVE-2009-3555
CVE CVE-2010-1321 https://access.redhat.com/security/cve/CVE-2010-1321
CVE CVE-2010-3541 https://access.redhat.com/security/cve/CVE-2010-3541
CVE CVE-2010-3548 https://access.redhat.com/security/cve/CVE-2010-3548
CVE CVE-2010-3549 https://access.redhat.com/security/cve/CVE-2010-3549
CVE CVE-2010-3550 https://access.redhat.com/security/cve/CVE-2010-3550
CVE CVE-2010-3551 https://access.redhat.com/security/cve/CVE-2010-3551
CVE CVE-2010-3553 https://access.redhat.com/security/cve/CVE-2010-3553
CVE CVE-2010-3555 https://access.redhat.com/security/cve/CVE-2010-3555
CVE CVE-2010-3556 https://access.redhat.com/security/cve/CVE-2010-3556
CVE CVE-2010-3557 https://access.redhat.com/security/cve/CVE-2010-3557
CVE CVE-2010-3558 https://access.redhat.com/security/cve/CVE-2010-3558
CVE CVE-2010-3560 https://access.redhat.com/security/cve/CVE-2010-3560
CVE CVE-2010-3562 https://access.redhat.com/security/cve/CVE-2010-3562
CVE CVE-2010-3563 https://access.redhat.com/security/cve/CVE-2010-3563
CVE CVE-2010-3565 https://access.redhat.com/security/cve/CVE-2010-3565
CVE CVE-2010-3566 https://access.redhat.com/security/cve/CVE-2010-3566
CVE CVE-2010-3568 https://access.redhat.com/security/cve/CVE-2010-3568
CVE CVE-2010-3569 https://access.redhat.com/security/cve/CVE-2010-3569
CVE CVE-2010-3571 https://access.redhat.com/security/cve/CVE-2010-3571
CVE CVE-2010-3572 https://access.redhat.com/security/cve/CVE-2010-3572
CVE CVE-2010-3573 https://access.redhat.com/security/cve/CVE-2010-3573
CVE CVE-2010-3574 https://access.redhat.com/security/cve/CVE-2010-3574
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/redhat/java-1.6.0-ibm?arch=x86_64&distro=redhat-6 redhat java-1.6.0-ibm < 1.6.0.9.0-1jpp.4.el6 redhat-6 x86_64
Affected pkg:rpm/redhat/java-1.6.0-ibm?arch=s390x&distro=redhat-6 redhat java-1.6.0-ibm < 1.6.0.9.0-1jpp.4.el6 redhat-6 s390x
Affected pkg:rpm/redhat/java-1.6.0-ibm?arch=ppc64&distro=redhat-6 redhat java-1.6.0-ibm < 1.6.0.9.0-1jpp.4.el6 redhat-6 ppc64
Affected pkg:rpm/redhat/java-1.6.0-ibm?arch=i686&distro=redhat-6 redhat java-1.6.0-ibm < 1.6.0.9.0-1jpp.4.el6 redhat-6 i686
Affected pkg:rpm/redhat/java-1.6.0-ibm-src?arch=x86_64&distro=redhat-6 redhat java-1.6.0-ibm-src < 1.6.0.9.0-1jpp.4.el6 redhat-6 x86_64
Affected pkg:rpm/redhat/java-1.6.0-ibm-src?arch=s390x&distro=redhat-6 redhat java-1.6.0-ibm-src < 1.6.0.9.0-1jpp.4.el6 redhat-6 s390x
Affected pkg:rpm/redhat/java-1.6.0-ibm-src?arch=ppc64&distro=redhat-6 redhat java-1.6.0-ibm-src < 1.6.0.9.0-1jpp.4.el6 redhat-6 ppc64
Affected pkg:rpm/redhat/java-1.6.0-ibm-src?arch=i686&distro=redhat-6 redhat java-1.6.0-ibm-src < 1.6.0.9.0-1jpp.4.el6 redhat-6 i686
Affected pkg:rpm/redhat/java-1.6.0-ibm-plugin?arch=x86_64&distro=redhat-6 redhat java-1.6.0-ibm-plugin < 1.6.0.9.0-1jpp.4.el6 redhat-6 x86_64
Affected pkg:rpm/redhat/java-1.6.0-ibm-plugin?arch=i686&distro=redhat-6 redhat java-1.6.0-ibm-plugin < 1.6.0.9.0-1jpp.4.el6 redhat-6 i686
Affected pkg:rpm/redhat/java-1.6.0-ibm-jdbc?arch=x86_64&distro=redhat-6 redhat java-1.6.0-ibm-jdbc < 1.6.0.9.0-1jpp.4.el6 redhat-6 x86_64
Affected pkg:rpm/redhat/java-1.6.0-ibm-jdbc?arch=s390x&distro=redhat-6 redhat java-1.6.0-ibm-jdbc < 1.6.0.9.0-1jpp.4.el6 redhat-6 s390x
Affected pkg:rpm/redhat/java-1.6.0-ibm-jdbc?arch=ppc64&distro=redhat-6 redhat java-1.6.0-ibm-jdbc < 1.6.0.9.0-1jpp.4.el6 redhat-6 ppc64
Affected pkg:rpm/redhat/java-1.6.0-ibm-jdbc?arch=i686&distro=redhat-6 redhat java-1.6.0-ibm-jdbc < 1.6.0.9.0-1jpp.4.el6 redhat-6 i686
Affected pkg:rpm/redhat/java-1.6.0-ibm-javacomm?arch=x86_64&distro=redhat-6 redhat java-1.6.0-ibm-javacomm < 1.6.0.9.0-1jpp.4.el6 redhat-6 x86_64
Affected pkg:rpm/redhat/java-1.6.0-ibm-javacomm?arch=ppc64&distro=redhat-6 redhat java-1.6.0-ibm-javacomm < 1.6.0.9.0-1jpp.4.el6 redhat-6 ppc64
Affected pkg:rpm/redhat/java-1.6.0-ibm-javacomm?arch=i686&distro=redhat-6 redhat java-1.6.0-ibm-javacomm < 1.6.0.9.0-1jpp.4.el6 redhat-6 i686
Affected pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=x86_64&distro=redhat-6 redhat java-1.6.0-ibm-devel < 1.6.0.9.0-1jpp.4.el6 redhat-6 x86_64
Affected pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=s390x&distro=redhat-6 redhat java-1.6.0-ibm-devel < 1.6.0.9.0-1jpp.4.el6 redhat-6 s390x
Affected pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=s390&distro=redhat-6 redhat java-1.6.0-ibm-devel < 1.6.0.9.0-1jpp.4.el6 redhat-6 s390
Affected pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=ppc64&distro=redhat-6 redhat java-1.6.0-ibm-devel < 1.6.0.9.0-1jpp.4.el6 redhat-6 ppc64
Affected pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=ppc&distro=redhat-6 redhat java-1.6.0-ibm-devel < 1.6.0.9.0-1jpp.4.el6 redhat-6 ppc
Affected pkg:rpm/redhat/java-1.6.0-ibm-devel?arch=i686&distro=redhat-6 redhat java-1.6.0-ibm-devel < 1.6.0.9.0-1jpp.4.el6 redhat-6 i686
Affected pkg:rpm/redhat/java-1.6.0-ibm-demo?arch=x86_64&distro=redhat-6 redhat java-1.6.0-ibm-demo < 1.6.0.9.0-1jpp.4.el6 redhat-6 x86_64
Affected pkg:rpm/redhat/java-1.6.0-ibm-demo?arch=s390x&distro=redhat-6 redhat java-1.6.0-ibm-demo < 1.6.0.9.0-1jpp.4.el6 redhat-6 s390x
Affected pkg:rpm/redhat/java-1.6.0-ibm-demo?arch=ppc64&distro=redhat-6 redhat java-1.6.0-ibm-demo < 1.6.0.9.0-1jpp.4.el6 redhat-6 ppc64
Affected pkg:rpm/redhat/java-1.6.0-ibm-demo?arch=i686&distro=redhat-6 redhat java-1.6.0-ibm-demo < 1.6.0.9.0-1jpp.4.el6 redhat-6 i686
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...