First published: Thu Nov 12 2009(Updated: )
The IBM 1.6.0 Java release includes the IBM Java 2 Runtime Environment and<br>the IBM Java 2 Software Development Kit.<br>This update fixes several vulnerabilities in the IBM Java 2 Runtime<br>Environment and the IBM Java 2 Software Development Kit. These<br>vulnerabilities are summarized on the IBM "Security alerts" page listed in<br>the References section. (CVE-2009-2625, CVE-2009-2670, CVE-2009-2671,<br>CVE-2009-2672, CVE-2009-2673, CVE-2009-2674, CVE-2009-2675, CVE-2009-2676)<br>All users of java-1.6.0-ibm are advised to upgrade to these updated<br>packages, containing the IBM 1.6.0 SR6 Java release. All running instances<br>of IBM Java must be restarted for the update to take effect.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/java | <1.6.0-ibm-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-accessibility-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-accessibility-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-demo-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-demo-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-demo-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-demo-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-devel-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-devel-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-devel-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-devel-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-javacomm-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-javacomm-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-javacomm-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-javacomm-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-jdbc-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-jdbc-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-jdbc-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-jdbc-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-plugin-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-plugin-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-src-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-src-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-src-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-src-1.6.0.6-1jpp.3.el5 |
redhat/java | <1.6.0-ibm-accessibility-1.6.0.6-1jpp.3.el5 | 1.6.0-ibm-accessibility-1.6.0.6-1jpp.3.el5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2009:1582 is classified as critical due to multiple vulnerabilities that could lead to arbitrary code execution.
To fix RHSA-2009:1582, upgrade the affected IBM Java packages to version 1.6.0-ibm-1.6.0.6-1jpp.3.el5 or later.
Affected packages include various IBM Java runtime and development environments such as ibm-devel, ibm-demo, and ibm-accessibility.
RHSA-2009:1582 is applicable specifically to users of the affected IBM Java 1.6.0 packages listed for Red Hat Enterprise Linux.
Failing to address RHSA-2009:1582 may result in system compromise through code execution exploits targeting the vulnerabilities in IBM Java.