Oval Definition:oval:com.redhat.rhsa:def:20100338
Revision Date:2010-03-31Version:603
Title:RHSA-2010:0338: java-1.5.0-sun security update (Critical)
Description:The Sun 1.5.0 Java release includes the Sun Java 5 Runtime Environment and the Sun Java 5 Software Development Kit.

  • The java-1.5.0-sun packages are vulnerable to a number of security flaws and should no longer be used. (CVE-2009-3555, CVE-2010-0082, CVE-2010-0084, CVE-2010-0085, CVE-2010-0087, CVE-2010-0088, CVE-2010-0089, CVE-2010-0091, CVE-2010-0092, CVE-2010-0093, CVE-2010-0094, CVE-2010-0095, CVE-2010-0837, CVE-2010-0838, CVE-2010-0839, CVE-2010-0840, CVE-2010-0841, CVE-2010-0842, CVE-2010-0843, CVE-2010-0844, CVE-2010-0845, CVE-2010-0846, CVE-2010-0847, CVE-2010-0848, CVE-2010-0849)

    The Sun Java SE Release family 5.0 reached its End of Service Life on November 3, 2009. The RHSA-2009:1571 update provided the final publicly available update of version 5.0 (Update 22). Users interested in continuing to receive critical fixes for Sun Java SE 5.0 should contact Oracle:

    http://www.sun.com/software/javaforbusiness/index.jsp

    An alternative to Sun Java SE 5.0 is the Java 2 Technology Edition of the IBM Developer Kit for Linux, which is available from the Extras and Supplementary channels on the Red Hat Network.

    Applications capable of using the Java 6 runtime can be migrated to Java 6 on: OpenJDK (java-1.6.0-openjdk), an open source JDK included in Red Hat Enterprise Linux 5, since 5.3; the IBM JDK, java-1.6.0-ibm; or the Sun JDK, java-1.6.0-sun.

    This update removes the java-1.5.0-sun packages as they have reached their End of Service Life.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2009-3555
    CVE-2010-0082
    CVE-2010-0084
    CVE-2010-0085
    CVE-2010-0087
    CVE-2010-0088
    CVE-2010-0089
    CVE-2010-0091
    CVE-2010-0092
    CVE-2010-0093
    CVE-2010-0094
    CVE-2010-0095
    CVE-2010-0837
    CVE-2010-0838
    CVE-2010-0839
    CVE-2010-0840
    CVE-2010-0841
    CVE-2010-0842
    CVE-2010-0843
    CVE-2010-0844
    CVE-2010-0845
    CVE-2010-0846
    CVE-2010-0847
    CVE-2010-0848
    CVE-2010-0849
    RHSA-2010:0338-02
    Platform(s):Supplementary for Red Hat Enterprise Linux 5
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux 5 is installed
  • AND Package Information
  • java-1.5.0-sun is earlier than 0:1.5.0.22-1jpp.3.el5
  • AND java-1.5.0-sun is signed with Red Hat redhatrelease key
  • OR
  • java-1.5.0-sun-uninstall is earlier than 0:1.5.0.22-1jpp.3.el5
  • AND java-1.5.0-sun-uninstall is signed with Red Hat redhatrelease key
  • BACK