RHSA-2016:0056: Critical: java-1.7.0-oracle security update
Oracle Java SE version 7 includes the Oracle Java Runtime Environment andthe Oracle Java Software Development Kit.This update fixes several vulnerabilities in the Oracle Java RuntimeEnvironment and the Oracle Java Software Development Kit. Furtherinformation about these flaws can be found on the Oracle Java SE CriticalPatch Update Advisory page, listed in the References section.(CVE-2015-7575, CVE-2015-8126, CVE-2015-8472, CVE-2016-0402, CVE-2016-0448,CVE-2016-0466, CVE-2016-0483, CVE-2016-0494)Note: This update also disallows the use of the MD5 hash algorithm in thecertification path processing. The use of MD5 can be re-enabled by removingMD5 from the jdk.certpath.disabledAlgorithms security property defined inthe java.security file.All users of java-1.7.0-oracle are advised to upgrade to these updatedpackages, which provide Oracle Java 7 Update 95 and resolve these issues.All running instances of Oracle Java must be restarted for the update totake effect.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2016:0056?
The severity of RHSA-2016:0056 is classified as important due to multiple vulnerabilities in the Oracle Java Runtime Environment.
How do I fix RHSA-2016:0056?
To fix RHSA-2016:0056, you should update your Oracle Java SE version 7 to the latest version available.
What vulnerabilities are addressed in RHSA-2016:0056?
RHSA-2016:0056 addresses several vulnerabilities in the Oracle Java Runtime Environment and the Oracle Java Software Development Kit.
Is my system affected by RHSA-2016:0056?
If you are using Oracle Java SE version 7, your system may be affected by RHSA-2016:0056.
When was RHSA-2016:0056 released?
RHSA-2016:0056 was released in January 2016.