RHSA-2014:0412: Critical: java-1.7.0-oracle security update
Oracle Java SE version 7 includes the Oracle Java Runtime Environment andthe Oracle Java Software Development Kit.This update fixes several vulnerabilities in the Oracle Java RuntimeEnvironment and the Oracle Java Software Development Kit. Furtherinformation about these flaws can be found on the Oracle Java SE CriticalPatch Update Advisory page, listed in the References section.(CVE-2013-6629, CVE-2013-6954, CVE-2014-0429, CVE-2014-0432, CVE-2014-0446,CVE-2014-0448, CVE-2014-0449, CVE-2014-0451, CVE-2014-0452, CVE-2014-0453,CVE-2014-0454, CVE-2014-0455, CVE-2014-0456, CVE-2014-0457, CVE-2014-0458,CVE-2014-0459, CVE-2014-0460, CVE-2014-0461, CVE-2014-1876, CVE-2014-2397,CVE-2014-2398, CVE-2014-2401, CVE-2014-2402, CVE-2014-2403, CVE-2014-2409,CVE-2014-2412, CVE-2014-2413, CVE-2014-2414, CVE-2014-2420, CVE-2014-2421,CVE-2014-2422, CVE-2014-2423, CVE-2014-2427, CVE-2014-2428)All users of java-1.7.0-oracle are advised to upgrade to these updatedpackages, which provide Oracle Java 7 Update 55 and resolve these issues.All running instances of Oracle Java must be restarted for the update totake effect.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2014:0412?
The severity of RHSA-2014:0412 is classified as critical due to the potential impact on the affected Java Runtime Environment and Software Development Kit.
How do I fix RHSA-2014:0412?
To fix RHSA-2014:0412, update your Oracle Java SE to the latest version that addresses the identified vulnerabilities.
What vulnerabilities does RHSA-2014:0412 address?
RHSA-2014:0412 addresses multiple vulnerabilities in the Oracle Java Runtime Environment and Software Development Kit that could lead to arbitrary code execution.
Is RHSA-2014:0412 relevant to all Java versions?
RHSA-2014:0412 is specifically relevant to Oracle Java SE version 7 and may not affect other versions.
What are the potential risks of not addressing RHSA-2014:0412?
Not addressing RHSA-2014:0412 can expose systems to exploitation, allowing attackers to execute arbitrary code and potentially compromise the entire system.