You are here
Home > Preporuke > Sigurnosni nedostatak programskog paketa openjdk-7

Sigurnosni nedostatak programskog paketa openjdk-7

  • Detalji os-a: WN7
  • Važnost: INF
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-3942-1
April 09, 2019

openjdk-7 vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 14.04 LTS

Summary:

Java applets or applications could be made to expose sensitive
information.

Software Description:
– openjdk-7: Open Source Java implementation

Details:

It was discovered that a memory disclosure issue existed in the OpenJDK
Library subsystem. An attacker could use this to expose sensitive
information and possibly bypass Java sandbox restrictions.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 14.04 LTS:
icedtea-7-jre-jamvm 7u211-2.6.17-0ubuntu0.1
openjdk-7-jdk 7u211-2.6.17-0ubuntu0.1
openjdk-7-jre 7u211-2.6.17-0ubuntu0.1

This update uses a new upstream release, which includes additional bug
fixes. After a standard system update you need to restart any Java
applications or applets to make all the necessary changes.

References:
https://usn.ubuntu.com/usn/usn-3942-1
CVE-2019-2422

Package Information:
https://launchpad.net/ubuntu/+source/openjdk-7/7u211-2.6.17-0ubuntu0.1

—–BEGIN PGP SIGNATURE—–
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=3SeY
—–END PGP SIGNATURE—–

AutorToni Vugdelija
Cert idNCERT-REF-2019-04-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostatak programskog paketa wget

Otkriven je sigurnosni nedostatak u programskom paketu wget za operacijski sustav Fedora. Otkriveni nedostatak potencijalnim napadačima omogućuje izvršavanje proizvoljnog programskog...

Close