First published: Thu Jan 14 2010(Updated: )
This update corrects several security vulnerabilities in the IBM Java<br>Runtime Environment shipped as part of Red Hat Network Satellite Server<br>5.3. In a typical operating environment, these are of low security risk as<br>the runtime is not used on untrusted applets.<br>Several flaws were fixed in the IBM Java 2 Runtime Environment.<br>(CVE-2009-0217, CVE-2009-1093, CVE-2009-1094, CVE-2009-1095, CVE-2009-1096,<br>CVE-2009-1097, CVE-2009-1098, CVE-2009-1099, CVE-2009-1100, CVE-2009-1101,<br>CVE-2009-1103, CVE-2009-1104, CVE-2009-1105, CVE-2009-1106, CVE-2009-1107,<br>CVE-2009-2625, CVE-2009-2670, CVE-2009-2671, CVE-2009-2672, CVE-2009-2673,<br>CVE-2009-2674, CVE-2009-2675, CVE-2009-2676, CVE-2009-3865, CVE-2009-3866,<br>CVE-2009-3867, CVE-2009-3868, CVE-2009-3869, CVE-2009-3871, CVE-2009-3872,<br>CVE-2009-3873, CVE-2009-3874, CVE-2009-3875, CVE-2009-3876, CVE-2009-3877)<br>Users of Red Hat Network Satellite Server 5.3 are advised to upgrade to<br>these updated java-1.6.0-ibm packages, which resolve these issues. For this<br>update to take effect, Red Hat Network Satellite Server must be restarted<br>("/usr/sbin/rhn-satellite restart"), as well as all running instances of<br>IBM Java.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/java | <1.6.0-ibm-1.6.0.7-1jpp.2.el5 | 1.6.0-ibm-1.6.0.7-1jpp.2.el5 |
redhat/java | <1.6.0-ibm-1.6.0.7-1jpp.2.el5 | 1.6.0-ibm-1.6.0.7-1jpp.2.el5 |
redhat/java | <1.6.0-ibm-devel-1.6.0.7-1jpp.2.el5 | 1.6.0-ibm-devel-1.6.0.7-1jpp.2.el5 |
redhat/java | <1.6.0-ibm-devel-1.6.0.7-1jpp.2.el5 | 1.6.0-ibm-devel-1.6.0.7-1jpp.2.el5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2010:0043 is considered low as the affected IBM Java Runtime Environment is not typically used for untrusted applets.
To fix RHSA-2010:0043, upgrade to the patched version of the IBM Java Runtime Environment as specified in the advisory.
Versions of IBM Java Runtime Environment up to 1.6.0-ibm-1.6.0.7-1jpp.2.el5 are affected by RHSA-2010:0043.
Yes, RHSA-2010:0043 specifically addresses vulnerabilities in the IBM Java Runtime Environment shipped with Red Hat Network Satellite Server 5.3.
The impact of RHSA-2010:0043 on a typical operating environment is low, given the runtime's limited exposure to untrusted applets.