java-1.7.0-openjdk-1.7.0.75-2.5.4.0.AXS4

エラータID: AXSA:2015-031:01

Release date: 
Monday, February 2, 2015 - 14:19
Subject: 
java-1.7.0-openjdk-1.7.0.75-2.5.4.0.AXS4
Affected Channels: 
Asianux Server 4 for x86_64
Asianux Server 4 for x86
Severity: 
High
Description: 

Description :
The OpenJDK runtime environment.

Security issues fixed with this release:

CVE-2014-3566
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE" issue.

CVE-2014-6585
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors reelated to 2D, a different vulnerability than CVE-2014-6591.

CVE-2014-6587
Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.

CVE-2014-6591
Unspecified vulnerability in the Java SE component in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to 2D, a different vulnerability than CVE-2014-6585.

CVE-2014-6593
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit 27.8.4 and 28.3.4 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE.

CVE-2014-6601
Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.

CVE-2015-0383
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit R27.8.4 and R28.3.4 allows local users to affect integrity and availability via unknown vectors related to Hotspot.

CVE-2015-0395
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.

CVE-2015-0407
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to Swing.

CVE-2015-0408
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI.

CVE-2015-0410
Unspecified vulnerability in the Java SE, Java SE Embedded, JRockit component in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit R27.8.4 and R28.3.4 allows remote attackers to affect availability via unknown vectors related to Security.

CVE-2015-0412
Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS.

Solution: 

Update package.

Additional Info: 

N/A

Download: 

SRPMS
  1. java-1.7.0-openjdk-1.7.0.75-2.5.4.0.AXS4.src.rpm
    MD5: 63e4cd19758b84f9b3d027360705a235
    SHA-256: d86684b1cc41edbc6c7964b54eb6eec4ad51e7db37b6dff6062e00aba44774b3
    Size: 38.30 MB

Asianux Server 4 for x86
  1. java-1.7.0-openjdk-1.7.0.75-2.5.4.0.AXS4.i686.rpm
    MD5: 06fd2e6acff978b89ccea14289e009ad
    SHA-256: 5b63c97a9157f3211e4e065f1b3dd6c84e9a792d7f3e089041545aac4c0c51d7
    Size: 27.03 MB
  2. java-1.7.0-openjdk-devel-1.7.0.75-2.5.4.0.AXS4.i686.rpm
    MD5: 29f722ef779e676aa7dd9820b05718d6
    SHA-256: f3b9efbae2f444ab3829f388209b923a7cd90c0861dc813b18f2b3acd763bac7
    Size: 9.42 MB

Asianux Server 4 for x86_64
  1. java-1.7.0-openjdk-1.7.0.75-2.5.4.0.AXS4.x86_64.rpm
    MD5: 38499dea93e1489939390111b20a642f
    SHA-256: c7dc1b0cf401ad433495a645cd82b19d5bcd45191bbe80bf9f916df8307c39d2
    Size: 25.83 MB
  2. java-1.7.0-openjdk-devel-1.7.0.75-2.5.4.0.AXS4.x86_64.rpm
    MD5: 3b0f0f28db561994a4d67a3a1bfd5d67
    SHA-256: bb53c2ef262ae73f045d70ea6307f01091896342f3f97ec66cfa4a1f1b7a1f12
    Size: 9.42 MB