First published: Wed Oct 19 2011(Updated: )
The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and<br>the Sun Java 6 Software Development Kit.<br>This update fixes several vulnerabilities in the Sun Java 6 Runtime<br>Environment and the Sun Java 6 Software Development Kit. Further<br>information about these flaws can be found on the Oracle Java SE Critical<br>Patch page, listed in the References section. (CVE-2011-3389,<br>CVE-2011-3516, CVE-2011-3521, CVE-2011-3544, CVE-2011-3545, CVE-2011-3546,<br>CVE-2011-3547, CVE-2011-3548, CVE-2011-3549, CVE-2011-3550, CVE-2011-3551,<br>CVE-2011-3552, CVE-2011-3553, CVE-2011-3554, CVE-2011-3555, CVE-2011-3556,<br>CVE-2011-3557, CVE-2011-3558, CVE-2011-3560, CVE-2011-3561)<br>All users of java-1.6.0-sun are advised to upgrade to these updated<br>packages, which provide JDK and JRE 6 Update 29 and resolve these issues.<br>All running instances of Sun Java must be restarted for the update to take<br>effect.<br>
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Java SE 7 | ||
Oracle Java SE 7 | <6 Update 29 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
RHSA-2011:1384 addresses multiple vulnerabilities that could potentially allow for remote code execution and denial of service, making it a high severity update.
To mitigate the issues described in RHSA-2011:1384, update your Sun Java 6 Runtime Environment and Software Development Kit to the latest version provided by the update.
RHSA-2011:1384 resolves several critical vulnerabilities in the Sun Java 6 Runtime Environment and Software Development Kit that could be exploited by attackers.
Any systems utilizing the Sun Java 6 Runtime Environment and Software Development Kit may be affected by the vulnerabilities covered in RHSA-2011:1384.
While the best practice is to apply updates, temporarily disabling Java in browsers is a recommended workaround until the update can be implemented.