Oval Definition:oval:org.mitre.oval:def:22816
Revision Date:2014-05-26Version:20
Title:ELSA-2011:0152: java-1.4.2-ibm security update (Moderate)
Description:Unspecified vulnerability in the Networking component in Oracle Java SE and Java for Business 6 Update 21, 5.0 Update 25, 1.4.2_27, and 1.3.1_28 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the October 2010 CPU. Oracle has not commented on claims from a reliable downstream vendor that HttpURLConnection does not properly check for the allowHttpTrace permission, which allows untrusted code to perform HTTP TRACE requests.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2010-1321
CVE-2010-3574
ELSA-2011:0152-01
Platform(s):Oracle Linux 5
Product(s):java-1.4.2-ibm
Definition Synopsis
  • Oracle Linux 5.x
  • AND rpm test
  • java-1.4.2-ibm is earlier than 0:1.4.2.13.8-1jpp.2.el5
  • OR java-1.4.2-ibm-devel is earlier than 0:1.4.2.13.8-1jpp.2.el5
  • OR java-1.4.2-ibm-src is earlier than 0:1.4.2.13.8-1jpp.2.el5
  • OR java-1.4.2-ibm-demo is earlier than 0:1.4.2.13.8-1jpp.2.el5
  • OR java-1.4.2-ibm-javacomm is earlier than 0:1.4.2.13.8-1jpp.2.el5
  • OR java-1.4.2-ibm-plugin is earlier than 0:1.4.2.13.8-1jpp.2.el5
  • OR java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.13.8-1jpp.2.el5
  • BACK