Red Hat Security Advisory: java-1.5.0-ibm security update
🔗 CVE IDs covered (13)
📋 Description
CVE-2009-3555 — TLS: MITM attacks via session renegotiation CVE-2010-0084 — OpenJDK Policy/PolicyFile leak dynamic ProtectionDomains. (6633872) CVE-2010-0085 — OpenJDK File TOCTOU deserialization vulnerability (6736390) CVE-2010-0087 — JDK unspecified vulnerability in JWS/Plugin component CVE-2010-0088 — OpenJDK Inflater/Deflater clone issues (6745393) CVE-2010-0089 — JDK unspecified vulnerability in JavaWS/Plugin component CVE-2010-0091 — OpenJDK Unsigned applet can retrieve the dragged information before drop action occurs(6887703) CVE-2010-0092 — OpenJDK AtomicReferenceArray causes SIGSEGV -> SEGV_MAPERR error (6888149) CVE-2010-0094 — OpenJDK Deserialization of RMIConnectionImpl objects should enforce stricter checks (6893947) CVE-2010-0095 — OpenJDK Subclasses of InetAddress may incorrectly interpret network addresses (6893954) CVE-2010-0837 — OpenJDK JAR "unpack200" must verify input parameters (6902299) CVE-2010-0838 — OpenJDK CMM readMabCurveData Buffer Overflow Vulnerability (6899653) CVE-2010-0839 — JDK multiple unspecified vulnerabilities
🔗 References (5)
- selfhttps://access.redhat.com/errata/RHSA-2010:0130
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttp://kbase.redhat.com/faq/docs/DOC-20491
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=533125
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2010/rhsa-2010_0130.json