RHSA-2015:0857: Critical: java-1.7.0-oracle security update
Oracle Java SE version 7 includes the Oracle Java Runtime Environment andthe Oracle Java Software Development Kit.This update fixes several vulnerabilities in the Oracle Java RuntimeEnvironment and the Oracle Java Software Development Kit. Furtherinformation about these flaws can be found on the Oracle Java SE CriticalPatch Update Advisory page, listed in the References section.(CVE-2005-1080, CVE-2015-0458, CVE-2015-0459, CVE-2015-0460, CVE-2015-0469,CVE-2015-0477, CVE-2015-0478, CVE-2015-0480, CVE-2015-0484, CVE-2015-0488,CVE-2015-0491, CVE-2015-0492)The CVE-2015-0478 issue was discovered by Florian Weimer of Red HatProduct Security.All users of java-1.7.0-oracle are advised to upgrade to these updatedpackages, which provide Oracle Java 7 Update 79 and resolve these issues.All running instances of Oracle Java must be restarted for the update totake effect.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2015:0857?
RHSA-2015:0857 has been classified as a critical vulnerability.
How do I fix RHSA-2015:0857?
To fix RHSA-2015:0857, update your Oracle Java SE to the latest version provided by the vendor.
What vulnerabilities are addressed in RHSA-2015:0857?
RHSA-2015:0857 addresses multiple vulnerabilities in the Oracle Java Runtime Environment and Oracle Java Software Development Kit.
Which versions of Oracle Java SE are affected by RHSA-2015:0857?
RHSA-2015:0857 affects Oracle Java SE version 7.
Is there a workaround for RHSA-2015:0857?
There are no official workarounds for RHSA-2015:0857; the recommended action is to apply the update.