RHSA-2013:1059: Critical: java-1.6.0-ibm security update
IBM Java SE version 6 includes the IBM Java Runtime Environment and the IBMJava Software Development Kit.This update fixes several vulnerabilities in the IBM Java RuntimeEnvironment and the IBM Java Software Development Kit. Detailedvulnerability descriptions are linked from the IBM Security alerts page,listed in the References section. (CVE-2013-1500, CVE-2013-1571,CVE-2013-2407, CVE-2013-2412, CVE-2013-2437, CVE-2013-2442, CVE-2013-2443,CVE-2013-2444, CVE-2013-2446, CVE-2013-2447, CVE-2013-2448, CVE-2013-2450,CVE-2013-2451, CVE-2013-2452, CVE-2013-2453, CVE-2013-2454, CVE-2013-2455,CVE-2013-2456, CVE-2013-2457, CVE-2013-2459, CVE-2013-2463, CVE-2013-2464,CVE-2013-2465, CVE-2013-2466, CVE-2013-2468, CVE-2013-2469, CVE-2013-2470,CVE-2013-2471, CVE-2013-2472, CVE-2013-2473, CVE-2013-3743)Red Hat would like to thank Tim Brown for reporting CVE-2013-1500, andUS-CERT for reporting CVE-2013-1571. US-CERT acknowledges Oracle as theoriginal reporter of CVE-2013-1571.All users of java-1.6.0-ibm are advised to upgrade to these updatedpackages, containing the IBM Java SE 6 SR14 release. All runninginstances of IBM Java must be restarted for the update to take effect.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2013:1059?
The severity of RHSA-2013:1059 is classified as important due to vulnerabilities in the IBM Java Runtime Environment.
How do I fix RHSA-2013:1059?
To fix RHSA-2013:1059, update to the fixed version of IBM Java, specifically 1.6.0-ibm-1.6.0.14.0-1jpp.1.el6_4 or later.
Which versions are affected by RHSA-2013:1059?
RHSA-2013:1059 affects multiple packages within the IBM Java SE version 6 environment prior to the specified update.
Is RHSA-2013:1059 related to any specific applications?
RHSA-2013:1059 affects applications relying on the vulnerable IBM Java Runtime Environment, impacting their security and performance.
What should I do if I cannot apply the fix for RHSA-2013:1059?
If unable to apply the fix for RHSA-2013:1059, consider isolating your systems or applications using the vulnerable version until an update can be applied.