Red Hat Security Advisory: java-1.6.0-sun security update
🔗 CVE IDs covered (29)
📋 Description
CVE-2009-3555 — TLS: MITM attacks via session renegotiation CVE-2010-1321 — krb5: null pointer dereference in GSS-API library leads to DoS (MITKRB5-SA-2010-005) CVE-2010-3541 — OpenJDK HttpURLConnection allows arbitrary request headers (6961084,6980004) CVE-2010-3548 — OpenJDK DNS server IP address information leak (6957564) CVE-2010-3549 — OpenJDK HttpURLConnection request splitting (6952017) CVE-2010-3550 — JDK unspecified vulnerability in Java Web Start component CVE-2010-3551 — OpenJDK local network address disclosure (6952603) CVE-2010-3552 — JDK unspecified vulnerability in New Java Plugin component CVE-2010-3553 — OpenJDK Swing unsafe reflection usage (6622002) CVE-2010-3554 — OpenJDK corba reflection vulnerabilities (6891766,6925672) CVE-2010-3555 — JDK unspecified vulnerability in Deployment component CVE-2010-3556 — JDK unspecified vulnerability in 2D component CVE-2010-3557 — OpenJDK Swing mutable static (6938813) CVE-2010-3558 — JDK unspecified vulnerability in Java Web Start component CVE-2010-3559 — JDK unspecified vulnerability in Sound component CVE-2010-3560 — JDK unspecified vulnerability in Networking component CVE-2010-3561 — OpenJDK corba reflection vulnerabilities (6891766,6925672) CVE-2010-3562 — OpenJDK IndexColorModel double-free (6925710) CVE-2010-3563 — OpenJDK: unspecified vulnerability in Deployment component CVE-2010-3565 — OpenJDK JPEG writeImage remote code execution (6963023) CVE-2010-3566 — OpenJDK ICC Profile remote code execution (6963489) CVE-2010-3567 — OpenJDK ICU Opentype layout engine crash (6963285) CVE-2010-3568 — OpenJDK Deserialization Race condition (6559775) CVE-2010-3569 — OpenJDK Serialization inconsistencies (6966692) CVE-2010-3570 — JDK unspecified vulnerability in Deployment Toolkit CVE-2010-3571 — JDK unspecified vulnerability in 2D component CVE-2010-3572 — JDK unspecified vulnerability in Sound component CVE-2010-3573 — OpenJDK HttpURLConnection allows arbitrary request headers (6961084,6980004) CVE-2010-3574 — OpenJDK HttpURLConnection incomplete TRACE permission check (6981426)
🔗 References (32)
- selfhttps://access.redhat.com/errata/RHSA-2010:0770
- externalhttps://access.redhat.com/security/updates/classification/#critical
- externalhttp://www.oracle.com/technetwork/topics/security/javacpuoct2010-176258.html
- externalhttps://access.redhat.com/kb/docs/DOC-20491
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=533125
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=582466
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=639876
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=639880
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=639897
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=639904
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=639909
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=639920
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=639922
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=639925
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642167
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642180
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642187
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642197
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642202
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642215
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642558
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642559
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642561
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642573
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642576
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642585
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642589
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642593
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642600
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642606
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=642611
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2010/rhsa-2010_0770.json