-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ## ## Patch description of patch 782bc79c0ff0ddb58008cb48b00673f8 ## Kind: security Shortdescription.english: Security update for Java2 Longdescription.english: Applies to Package: java2,java2-jre Product(s): Release: 20050125 Obsoletes: none Indications Install if you are using Java. Contraindications None. Problem description A vulnerability in the Java plug-in may allow an untrusted applet to escalate privileges, through JavaScript calling into Java code, including reading and writing files with the privileges of the user running the applet. (Mitre CVE ID CAN-2004-1029) Solution Please install the updates provided at the location noted below. Installation notes This update is provided as an RPM package that can easily be installed onto a running system by using this command: rpm -Fvh java2.rpm java2-jre.rpm Hsilgne.noitpircsedgnol: Size: 23618 MinYaST1Version: MinYaST2Version: UpdateOnlyInstalled: true Packages: ## ## -----> java2 <----- ## Filename: java2.rpm Label: Java(TM) 2 SDK, Standard Edition Series: i586 Size: 17002155 10306357 PatchRpmBasedOn: 1.3.1-524 PatchRpmSize: 17002155 9040710 Buildtime: 1106230707 DepAND: DepOR: DepExcl: Flag: Category: RpmGroup: Development/Languages/Java Copyright: Other License(s), see package AuthorName: AuthorAddress: Version: 1.3.1-687 StartCommand: Obsoletes: Requires: java2-jre /bin/sh ld-linux.so.2 libICE.so.6 libSM.so.6 libX11.so.6 libXext.so.6 libXt.so.6 libXtst.so.6 libawt.so libc.so.6 libc.so.6(GLIBC_2.0) libc.so.6(GLIBC_2.1) libdl.so.2 libdl.so.2(GLIBC_2.0) libdl.so.2(GLIBC_2.1) libhpi.so libjava.so libjvm.so libm.so.6 libm.so.6(GLIBC_2.1) libmlib_image.so libnsl.so.1 libpthread.so.0 libpthread.so.0(GLIBC_2.0) libpthread.so.0(GLIBC_2.1) libverify.so libverify.so(VER_1) /bin/mkdir /bin/cat /bin/sh rpmlib(PayloadIsBzip2) <= 3.0.5-1 Provides: SunJava2 jdk1.1.x sdk1.2.x sdk1.3.x libdt_socket.so libjdwp.so ## ## -----> java2-jre <----- ## Filename: java2-jre.rpm Label: Java(TM) 2 Runtime Environment Series: i586 Size: 39677988 13879308 PatchRpmBasedOn: 1.3.1-524 PatchRpmSize: 39677988 11683060 Buildtime: 1106230707 DepAND: DepOR: DepExcl: Flag: Category: RpmGroup: Development/Languages/Java Copyright: Other License(s), see package AuthorName: AuthorAddress: Version: 1.3.1-687 StartCommand: Obsoletes: Requires: unixODBC compat /bin/sh ld-linux.so.2 libICE.so.6 libSM.so.6 libX11.so.6 libXext.so.6 libXi.so.6 libXp.so.6 libXt.so.6 libXtst.so.6 libawt.so libc.so.6 libc.so.6(GLIBC_2.0) libc.so.6(GLIBC_2.1) libdl.so.2 libdl.so.2(GLIBC_2.0) libdl.so.2(GLIBC_2.1) libgdk-1.2.so.0 libglib-1.2.so.0 libgmodule-1.2.so.0 libhpi.so libjava.so libjvm.so libm.so.6 libm.so.6(GLIBC_2.0) libm.so.6(GLIBC_2.1) libmlib_image.so libnsl.so.1 libpthread.so.0 libpthread.so.0(GLIBC_2.0) libpthread.so.0(GLIBC_2.1) libstdc++-libc6.1-1.so.2 libverify.so libverify.so(VER_1) /bin/mkdir /bin/cat /bin/sh rpmlib(PayloadIsBzip2) <= 3.0.5-1 Provides: java_runtime jre1.1.x jre1.2.x jre1.3.x libverify.so(VER_1) javaplugin.so libJdbcOdbc.so libagent.so libawt.so libcmm.so libdcpr.so libfontmanager.so libhpi.so libhprof.so libioser12.so libjava.so libjavaplugin_jni.so libjavaplugin_oji.so libjawt.so libjcov.so libjpeg.so libjsound.so libjvm.so libmlib_image.so libnet.so libpreemptive_close.so libverify.so libzip.so Segakcap: -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (GNU/Linux) iD8DBQFB9nnGqE7a6JyACsoRAhKmAJ4lXsNvXyo11OZyzaQ+k8XN6/rV5ACf VyrVeQCwkbUkz+owcubRC5VHVMc= =GBis -----END PGP SIGNATURE-----