RHSA-2010:0043: Low: Red Hat Network Satellite Server IBM Java Runtime security update
This update corrects several security vulnerabilities in the IBM JavaRuntime Environment shipped as part of Red Hat Network Satellite Server5.3. In a typical operating environment, these are of low security risk asthe runtime is not used on untrusted applets.Several flaws were fixed in the IBM Java 2 Runtime Environment.(CVE-2009-0217, CVE-2009-1093, CVE-2009-1094, CVE-2009-1095, CVE-2009-1096,CVE-2009-1097, CVE-2009-1098, CVE-2009-1099, CVE-2009-1100, CVE-2009-1101,CVE-2009-1103, CVE-2009-1104, CVE-2009-1105, CVE-2009-1106, CVE-2009-1107,CVE-2009-2625, CVE-2009-2670, CVE-2009-2671, CVE-2009-2672, CVE-2009-2673,CVE-2009-2674, CVE-2009-2675, CVE-2009-2676, CVE-2009-3865, CVE-2009-3866,CVE-2009-3867, CVE-2009-3868, CVE-2009-3869, CVE-2009-3871, CVE-2009-3872,CVE-2009-3873, CVE-2009-3874, CVE-2009-3875, CVE-2009-3876, CVE-2009-3877)Users of Red Hat Network Satellite Server 5.3 are advised to upgrade tothese updated java-1.6.0-ibm packages, which resolve these issues. For thisupdate to take effect, Red Hat Network Satellite Server must be restarted("/usr/sbin/rhn-satellite restart"), as well as all running instances ofIBM Java.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2010:0043?
The severity of RHSA-2010:0043 is considered low as the affected IBM Java Runtime Environment is not typically used for untrusted applets.
How do I fix RHSA-2010:0043?
To fix RHSA-2010:0043, upgrade to the patched version of the IBM Java Runtime Environment as specified in the advisory.
Which versions are affected by RHSA-2010:0043?
Versions of IBM Java Runtime Environment up to 1.6.0-ibm-1.6.0.7-1jpp.2.el5 are affected by RHSA-2010:0043.
Is RHSA-2010:0043 applicable to Red Hat Network Satellite Server 5.3?
Yes, RHSA-2010:0043 specifically addresses vulnerabilities in the IBM Java Runtime Environment shipped with Red Hat Network Satellite Server 5.3.
What impact does RHSA-2010:0043 have on my system?
The impact of RHSA-2010:0043 on a typical operating environment is low, given the runtime's limited exposure to untrusted applets.