RHSA-2014:0136: Important: java-1.5.0-ibm security update
IBM J2SE version 5.0 includes the IBM Java Runtime Environment and the IBMJava Software Development Kit.This update fixes several vulnerabilities in the IBM Java RuntimeEnvironment and the IBM Java Software Development Kit. Detailedvulnerability descriptions are linked from the IBM Security alertspage, listed in the References section. (CVE-2013-5907, CVE-2014-0368,CVE-2014-0373, CVE-2014-0376, CVE-2014-0411, CVE-2014-0416, CVE-2014-0417,CVE-2014-0422, CVE-2014-0423, CVE-2014-0428)All users of java-1.5.0-ibm are advised to upgrade to these updatedpackages, containing the IBM J2SE 5.0 SR16-FP5 release. All runninginstances of IBM Java must be restarted for this update to take effect.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2014:0136?
The severity of RHSA-2014:0136 is categorized as important due to several vulnerabilities in the IBM Java Runtime Environment.
How do I fix RHSA-2014:0136?
To resolve RHSA-2014:0136, update to the specified patched version of the IBM Java packages mentioned in the advisory.
What versions of software are affected by RHSA-2014:0136?
RHSA-2014:0136 affects various versions of the IBM Java Runtime Environment, including 1.5.0-ibm up to 1.5.0-ibm-1.5.0.16.5-1jpp.1.el6_5.
Are there any specific packages mentioned in RHSA-2014:0136?
Yes, affected packages include java, java-demo, java-devel, javacomm, jdbc, plugin, and src from the IBM Java environment.
Is there a need for immediate action regarding RHSA-2014:0136?
Yes, organizations and users running the affected versions should apply the patches as soon as possible to mitigate the security risks.