java-1.7.0-openjdk-1.7.0.95-2.6.4.0.1.el7
エラータID: AXSA:2016-042:01
The OpenJDK runtime environment.
Security issues fixed with this release:
CVE-2015-4871
Unspecified vulnerability in Oracle Java SE 7u85 allows remote
attackers to affect confidentiality and integrity via unknown vectors
related to Libraries.
CVE-2015-7575
Mozilla Network Security Services (NSS) before 3.20.2, as used in
Mozilla Firefox before 43.0.2 and Firefox ESR 38.x before 38.5.2, does
not reject MD5 signatures in Server Key Exchange messages in TLS 1.2
Handshake Protocol traffic, which makes it easier for
man-in-the-middle attackers to spoof servers by triggering a
collision.
CVE-2016-0402
** RESERVED **
This candidate has been reserved by an organization or individual that
will use it when announcing a new security problem. When the
candidate has been publicized, the details for this candidate will be
provided.
CVE-2016-0448
** RESERVED **
This candidate has been reserved by an organization or individual that
will use it when announcing a new security problem. When the
candidate has been publicized, the details for this candidate will be
provided.
CVE-2016-0466
** RESERVED **
This candidate has been reserved by an organization or individual that
will use it when announcing a new security problem. When the
candidate has been publicized, the details for this candidate will be
provided.
CVE-2016-0483
** RESERVED **
This candidate has been reserved by an organization or individual that
will use it when announcing a new security problem. When the
candidate has been publicized, the details for this candidate will be
provided.
CVE-2016-0494
** RESERVED **
This candidate has been reserved by an organization or individual that
will use it when announcing a new security problem. When the
candidate has been publicized, the details for this candidate will be
provided.
Update packages.
Unspecified vulnerability in Oracle Java SE 7u85 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries.
Mozilla Network Security Services (NSS) before 3.20.2, as used in Mozilla Firefox before 43.0.2 and Firefox ESR 38.x before 38.5.2, does not reject MD5 signatures in Server Key Exchange messages in TLS 1.2 Handshake Protocol traffic, which makes it easier for man-in-the-middle attackers to spoof servers by triggering a collision.
Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66 and Java SE Embedded 8u65 allows remote attackers to affect integrity via unknown vectors related to Networking.
Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66, and Java SE Embedded 8u65 allows remote authenticated users to affect confidentiality via vectors related to JMX.
Unspecified vulnerability in the Java SE, Java SE Embedded, and JRockit components in Oracle Java SE 6u105, 7u91, and 8u66; Java SE Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect availability via vectors related to JAXP.
Unspecified vulnerability in Oracle Java SE 6u105, 7u91, and 8u66; Java SE Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that this is a heap-based buffer overflow in the readImage function, which allows remote attackers to execute arbitrary code via crafted image data.
Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66 and Java SE Embedded 8u65 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.
N/A
SRPMS
- java-1.7.0-openjdk-1.7.0.95-2.6.4.0.1.el7.src.rpm
MD5: 16f6201bc17df3a3609897bdfcf274f7
SHA-256: fe5d3684781b675d559147bc4b0543be7086808407c32aac8802d2db2ba6eee3
Size: 38.91 MB
Asianux Server 7 for x86_64
- java-1.7.0-openjdk-1.7.0.95-2.6.4.0.1.el7.x86_64.rpm
MD5: 431359e3e9dcee8ca8f1911f836685cd
SHA-256: 856bf4d57b14b5b74242f91f7d8c1b502cc71a786b991a63f397816f0aba24a3
Size: 206.42 kB - java-1.7.0-openjdk-devel-1.7.0.95-2.6.4.0.1.el7.x86_64.rpm
MD5: ca57f2fa817e10236259c0b6f1022274
SHA-256: 32075041bc0ec31d6f578f442acf92f18bbe7b4c0376b2d0f0fa4b32de85dfff
Size: 9.12 MB - java-1.7.0-openjdk-headless-1.7.0.95-2.6.4.0.1.el7.x86_64.rpm
MD5: ebe362100a945be0d9b672aae426ea4b
SHA-256: 8b96b3c8dfa63d9eaf48fc7652f4a0c20938f1bafc2a68384bae8c525fc2da3e
Size: 25.25 MB