Oval Definition:oval:org.opensuse.security:def:125785
Revision Date:2022-08-25Version:1
Title:Security update for java-1_7_1-ibm (Important)
Description:

This update for java-1_7_1-ibm fixes the following issues:

- Updated to Java 7.1 Service Refresh 5 Fix Pack 15 (bsc#1202427): - CVE-2022-34169: Fixed an integer truncation issue in the Xalan Java XSLT library that occurred when processing malicious stylesheets (bsc#1201684). - CVE-2022-21549: Fixed an issue that could lead to computing negative random exponentials (bsc#1201685). - CVE-2022-21541: Fixed a potential bypass of sandbox restrictions in the Hotspot component (bsc#1201692). - CVE-2022-21540: Fixed a potential bypass of sandbox restrictions in the Hotspot component (bsc#1201694).
Family:unixClass:patch
Status:Reference(s):1201684
1201685
1201692
1201694
1202427
CVE-2022-21540
CVE-2022-21541
CVE-2022-21549
CVE-2022-34169
SUSE-SU-2022:2898-1
Platform(s):SUSE Linux Enterprise Server for SAP Applications 12 SP4
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr5.15-38.74.1 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr5.15-38.74.1 is installed
  • OR java-1_7_1-ibm-devel-1.7.1_sr5.15-38.74.1 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr5.15-38.74.1 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr5.15-38.74.1 is installed
  • BACK