suse-su-2015:0343-2
Vulnerability from csaf_suse
Published
2014-11-19 10:21
Modified
2014-11-19 10:21
Summary
Security update for IBM Java

Notes

Title of the patch
Security update for IBM Java
Description of the patch
java-1_6_0-ibm has been updated to version 1.6.0_sr16.2 to fix 18 security issues. These security issues have been fixed: * Unspecified vulnerability in Oracle Java SE 6u81 (CVE-2014-3065). * The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the 'POODLE' issue (CVE-2014-3566). * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT (CVE-2014-6513). * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6493, and CVE-2014-6532 (CVE-2014-6503). * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6493, and CVE-2014-6503 (CVE-2014-6532). * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-6493, CVE-2014-6503, and CVE-2014-6532 (CVE-2014-4288). * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6503, and CVE-2014-6532 (CVE-2014-6493). * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment (CVE-2014-6492). * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment (CVE-2014-6458). * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Internet Explorer, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment (CVE-2014-6466). * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries (CVE-2014-6506). * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect integrity via unknown vectors related to Deployment (CVE-2014-6515). * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality via unknown vectors related to 2D (CVE-2014-6511). * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality via unknown vectors related to Libraries (CVE-2014-6531). * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and R28.3.3 allows remote attackers to affect integrity via unknown vectors related to Libraries (CVE-2014-6512). * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3, and R28.3.3 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE (CVE-2014-6457). * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect integrity via unknown vectors related to Libraries (CVE-2014-6502). * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and JRockit R28.3.3 allows remote attackers to affect integrity via unknown vectors related to Security (CVE-2014-6558). More information can be found at http://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_November_2014 <http://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_November_2014> Security Issues: * CVE-2014-3065 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3065> * CVE-2014-3566 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3566> * CVE-2014-6506 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6506> * CVE-2014-6511 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6511> * CVE-2014-6531 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6531> * CVE-2014-6512 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6512> * CVE-2014-6457 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6457> * CVE-2014-6502 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6502> * CVE-2014-6558 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6558> * CVE-2014-6513 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6513> * CVE-2014-6503 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6503> * CVE-2014-4288 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-4288> * CVE-2014-6493 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6493> * CVE-2014-6532 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6532> * CVE-2014-6492 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6492> * CVE-2014-6458 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6458> * CVE-2014-6466 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6466> * CVE-2014-6515 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6515> * CVE-2014-6456 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6456> * CVE-2014-6476 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6476> * CVE-2014-6527 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6527>
Patchnames
sleman17sp2-java-1_6_0-ibm
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).



{
  "document": {
    "aggregate_severity": {
      "namespace": "https://www.suse.com/support/security/rating/",
      "text": "moderate"
    },
    "category": "csaf_security_advisory",
    "csaf_version": "2.0",
    "distribution": {
      "text": "Copyright 2024 SUSE LLC. All rights reserved.",
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en",
    "notes": [
      {
        "category": "summary",
        "text": "Security update for IBM Java",
        "title": "Title of the patch"
      },
      {
        "category": "description",
        "text": "\njava-1_6_0-ibm has been updated to version 1.6.0_sr16.2 to fix 18 security \nissues.\n\nThese security issues have been fixed:\n\n    * Unspecified vulnerability in Oracle Java SE 6u81 (CVE-2014-3065).\n    * The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other\n      products, uses nondeterministic CBC padding, which makes it easier\n      for man-in-the-middle attackers to obtain cleartext data via a\n      padding-oracle attack, aka the \u0027POODLE\u0027 issue (CVE-2014-3566).\n    * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, and\n      Java SE Embedded 7u60, allows remote attackers to affect\n      confidentiality, integrity, and availability via vectors related to\n      AWT (CVE-2014-6513).\n    * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20\n      allows remote attackers to affect confidentiality, integrity, and\n      availability via unknown vectors related to Deployment, a different\n      vulnerability than CVE-2014-4288, CVE-2014-6493, and CVE-2014-6532\n      (CVE-2014-6503).\n    * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20\n      allows remote attackers to affect confidentiality, integrity, and\n      availability via unknown vectors related to Deployment, a different\n      vulnerability than CVE-2014-4288, CVE-2014-6493, and CVE-2014-6503\n      (CVE-2014-6532).\n    * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20\n      allows remote attackers to affect confidentiality, integrity, and\n      availability via unknown vectors related to Deployment, a different\n      vulnerability than CVE-2014-6493, CVE-2014-6503, and CVE-2014-6532\n      (CVE-2014-4288).\n    * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20\n      allows remote attackers to affect confidentiality, integrity, and\n      availability via unknown vectors related to Deployment, a different\n      vulnerability than CVE-2014-4288, CVE-2014-6503, and CVE-2014-6532\n      (CVE-2014-6493).\n    * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20,\n      when running on Firefox, allows remote attackers to affect\n      confidentiality, integrity, and availability via unknown vectors\n      related to Deployment (CVE-2014-6492).\n    * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20\n      allows local users to affect confidentiality, integrity, and\n      availability via unknown vectors related to Deployment\n      (CVE-2014-6458).\n    * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20,\n      when running on Internet Explorer, allows local users to affect\n      confidentiality, integrity, and availability via unknown vectors\n      related to Deployment (CVE-2014-6466).\n    * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and\n      8u20, and Java SE Embedded 7u60, allows remote attackers to affect\n      confidentiality, integrity, and availability via unknown vectors\n      related to Libraries (CVE-2014-6506).\n    * Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20\n      allows remote attackers to affect integrity via unknown vectors\n      related to Deployment (CVE-2014-6515).\n    * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and\n      8u20 allows remote attackers to affect confidentiality via unknown\n      vectors related to 2D (CVE-2014-6511).\n    * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and\n      8u20, and Java SE Embedded 7u60, allows remote attackers to affect\n      confidentiality via unknown vectors related to Libraries\n      (CVE-2014-6531).\n    * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and\n      8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and R28.3.3 allows\n      remote attackers to affect integrity via unknown vectors related to\n      Libraries (CVE-2014-6512).\n    * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and\n      8u20; Java SE Embedded 7u60; and JRockit R27.8.3, and R28.3.3 allows\n      remote attackers to affect confidentiality and integrity via vectors\n      related to JSSE (CVE-2014-6457).\n    * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and\n      8u20, and Java SE Embedded 7u60, allows remote attackers to affect\n      integrity via unknown vectors related to Libraries (CVE-2014-6502).\n    * Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and\n      8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and JRockit R28.3.3\n      allows remote attackers to affect integrity via unknown vectors\n      related to Security (CVE-2014-6558).\n\nMore information can be found at \nhttp://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_November_2014\n\u003chttp://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_November_2014\u003e\n\nSecurity Issues:\n\n    * CVE-2014-3065\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3065\u003e\n    * CVE-2014-3566\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3566\u003e\n    * CVE-2014-6506\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6506\u003e\n    * CVE-2014-6511\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6511\u003e\n    * CVE-2014-6531\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6531\u003e\n    * CVE-2014-6512\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6512\u003e\n    * CVE-2014-6457\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6457\u003e\n    * CVE-2014-6502\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6502\u003e\n    * CVE-2014-6558\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6558\u003e\n    * CVE-2014-6513\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6513\u003e\n    * CVE-2014-6503\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6503\u003e\n    * CVE-2014-4288\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-4288\u003e\n    * CVE-2014-6493\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6493\u003e\n    * CVE-2014-6532\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6532\u003e\n    * CVE-2014-6492\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6492\u003e\n    * CVE-2014-6458\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6458\u003e\n    * CVE-2014-6466\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6466\u003e\n    * CVE-2014-6515\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6515\u003e\n    * CVE-2014-6456\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6456\u003e\n    * CVE-2014-6476\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6476\u003e\n    * CVE-2014-6527\n      \u003chttp://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6527\u003e\n\n",
        "title": "Description of the patch"
      },
      {
        "category": "details",
        "text": "sleman17sp2-java-1_6_0-ibm",
        "title": "Patchnames"
      },
      {
        "category": "legal_disclaimer",
        "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).",
        "title": "Terms of use"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "https://www.suse.com/support/security/contact/",
      "name": "SUSE Product Security Team",
      "namespace": "https://www.suse.com/"
    },
    "references": [
      {
        "category": "external",
        "summary": "SUSE ratings",
        "url": "https://www.suse.com/support/security/rating/"
      },
      {
        "category": "self",
        "summary": "URL of this CSAF notice",
        "url": "https://ftp.suse.com/pub/projects/security/csaf/suse-su-2015_0343-2.json"
      },
      {
        "category": "self",
        "summary": "URL for SUSE-SU-2015:0343-2",
        "url": "https://www.suse.com/support/update/announcement/2015/suse-su-20150343-2/"
      },
      {
        "category": "self",
        "summary": "E-Mail link for SUSE-SU-2015:0343-2",
        "url": "https://lists.suse.com/pipermail/sle-security-updates/2015-February/001253.html"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 862064",
        "url": "https://bugzilla.suse.com/862064"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 877430",
        "url": "https://bugzilla.suse.com/877430"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 891700",
        "url": "https://bugzilla.suse.com/891700"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 904889",
        "url": "https://bugzilla.suse.com/904889"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 912434",
        "url": "https://bugzilla.suse.com/912434"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 912447",
        "url": "https://bugzilla.suse.com/912447"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 916265",
        "url": "https://bugzilla.suse.com/916265"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 916266",
        "url": "https://bugzilla.suse.com/916266"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 930365",
        "url": "https://bugzilla.suse.com/930365"
      },
      {
        "category": "self",
        "summary": "SUSE Bug 931702",
        "url": "https://bugzilla.suse.com/931702"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-5878 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-5878/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-5884 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-5884/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-5887 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-5887/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-5888 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-5888/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-5889 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-5889/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-5896 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-5896/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-5898 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-5898/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-5899 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-5899/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-5907 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-5907/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-5910 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-5910/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-6629 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-6629/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2013-6954 page",
        "url": "https://www.suse.com/security/cve/CVE-2013-6954/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0368 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0368/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0373 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0373/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0375 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0375/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0376 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0376/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0387 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0387/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0403 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0403/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0410 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0410/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0411 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0411/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0415 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0415/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0416 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0416/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0417 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0417/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0422 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0422/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0423 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0423/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0424 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0424/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0428 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0428/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0429 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0429/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0446 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0446/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0449 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0449/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0451 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0451/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0452 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0452/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0453 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0453/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0457 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0457/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0458 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0458/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0459 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0459/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0460 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0460/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0461 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0461/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-0878 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-0878/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-1876 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-1876/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-2398 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-2398/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-2401 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-2401/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-2409 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-2409/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-2412 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-2412/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-2414 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-2414/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-2420 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-2420/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-2421 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-2421/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-2423 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-2423/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-2427 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-2427/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-2428 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-2428/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-3065 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-3065/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-3566 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-3566/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-4209 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-4209/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-4218 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-4218/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-4219 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-4219/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-4227 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-4227/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-4244 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-4244/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-4252 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-4252/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-4262 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-4262/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-4263 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-4263/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-4265 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-4265/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-4268 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-4268/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-4288 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-4288/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6456 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6456/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6457 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6457/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6458 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6458/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6466 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6466/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6476 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6476/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6492 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6492/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6493 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6493/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6502 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6502/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6503 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6503/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6506 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6506/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6511 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6511/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6512 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6512/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6513 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6513/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6515 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6515/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6527 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6527/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6531 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6531/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6532 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6532/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-6558 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-6558/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-8891 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-8891/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2014-8892 page",
        "url": "https://www.suse.com/security/cve/CVE-2014-8892/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-0138 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-0138/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-0192 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-0192/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-0204 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-0204/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-0458 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-0458/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-0459 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-0459/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-0469 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-0469/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-0477 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-0477/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-0478 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-0478/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-0480 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-0480/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-0488 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-0488/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-0491 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-0491/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-1914 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-1914/"
      },
      {
        "category": "self",
        "summary": "SUSE CVE CVE-2015-2808 page",
        "url": "https://www.suse.com/security/cve/CVE-2015-2808/"
      }
    ],
    "title": "Security update for IBM Java",
    "tracking": {
      "current_release_date": "2014-11-19T10:21:52Z",
      "generator": {
        "date": "2014-11-19T10:21:52Z",
        "engine": {
          "name": "cve-database.git:bin/generate-csaf.pl",
          "version": "1"
        }
      },
      "id": "SUSE-SU-2015:0343-2",
      "initial_release_date": "2014-11-19T10:21:52Z",
      "revision_history": [
        {
          "date": "2014-11-19T10:21:52Z",
          "number": "1",
          "summary": "Current version"
        }
      ],
      "status": "final",
      "version": "1"
    }
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_version",
                "name": "java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
                "product": {
                  "name": "java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
                  "product_id": "java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
                "product": {
                  "name": "java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
                  "product_id": "java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
                "product": {
                  "name": "java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
                  "product_id": "java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
                "product": {
                  "name": "java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
                  "product_id": "java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64"
                }
              },
              {
                "category": "product_version",
                "name": "java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64",
                "product": {
                  "name": "java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64",
                  "product_id": "java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
                }
              }
            ],
            "category": "architecture",
            "name": "x86_64"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "SUSE Manager 1.7",
                "product": {
                  "name": "SUSE Manager 1.7",
                  "product_id": "SUSE Manager 1.7",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:suse:suse-manager-server:1.7"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "SUSE Linux Enterprise"
          }
        ],
        "category": "vendor",
        "name": "SUSE"
      }
    ],
    "relationships": [
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64 as component of SUSE Manager 1.7",
          "product_id": "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64"
        },
        "product_reference": "java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
        "relates_to_product_reference": "SUSE Manager 1.7"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64 as component of SUSE Manager 1.7",
          "product_id": "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64"
        },
        "product_reference": "java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
        "relates_to_product_reference": "SUSE Manager 1.7"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64 as component of SUSE Manager 1.7",
          "product_id": "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64"
        },
        "product_reference": "java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
        "relates_to_product_reference": "SUSE Manager 1.7"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64 as component of SUSE Manager 1.7",
          "product_id": "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64"
        },
        "product_reference": "java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
        "relates_to_product_reference": "SUSE Manager 1.7"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64 as component of SUSE Manager 1.7",
          "product_id": "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        },
        "product_reference": "java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64",
        "relates_to_product_reference": "SUSE Manager 1.7"
      }
    ]
  },
  "vulnerabilities": [
    {
      "cve": "CVE-2013-5878",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-5878"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45, Java SE Embedded 7u45, and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Security.  NOTE: the previous information is from the January 2014 CPU.  Oracle has not commented on third-party claims that the Security component does not properly handle null XML namespace (xmlns) attributes during XML document canonicalization, which allows attackers to escape the sandbox.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-5878",
          "url": "https://www.suse.com/security/cve/CVE-2013-5878"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2013-5878",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2013-5878",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "important"
        }
      ],
      "title": "CVE-2013-5878"
    },
    {
      "cve": "CVE-2013-5884",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-5884"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality via vectors related to CORBA.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to an incorrect check for code permissions by CORBA stub factories.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-5884",
          "url": "https://www.suse.com/security/cve/CVE-2013-5884"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2013-5884",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2013-5884",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2013-5884"
    },
    {
      "cve": "CVE-2013-5887",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-5887"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect availability via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-5887",
          "url": "https://www.suse.com/security/cve/CVE-2013-5887"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2013-5887",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2013-5887"
    },
    {
      "cve": "CVE-2013-5888",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-5888"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45, when running with GNOME, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-5888",
          "url": "https://www.suse.com/security/cve/CVE-2013-5888"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2013-5888",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2013-5888"
    },
    {
      "cve": "CVE-2013-5889",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-5889"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5902, CVE-2014-0410, CVE-2014-0415, CVE-2014-0418, and CVE-2014-0424.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-5889",
          "url": "https://www.suse.com/security/cve/CVE-2013-5889"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2013-5889",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2013-5889"
    },
    {
      "cve": "CVE-2013-5896",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-5896"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect availability via vectors related to CORBA.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that com.sun.corba.se and its sub-packages are not included on the restricted package list.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-5896",
          "url": "https://www.suse.com/security/cve/CVE-2013-5896"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2013-5896",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2013-5896",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2013-5896"
    },
    {
      "cve": "CVE-2013-5898",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-5898"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2014-0375 and CVE-2014-0403.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-5898",
          "url": "https://www.suse.com/security/cve/CVE-2013-5898"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2013-5898",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "low"
        }
      ],
      "title": "CVE-2013-5898"
    },
    {
      "cve": "CVE-2013-5899",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-5899"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-5899",
          "url": "https://www.suse.com/security/cve/CVE-2013-5899"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2013-5899",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2013-5899"
    },
    {
      "cve": "CVE-2013-5907",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-5907"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; JRockit R27.7.7 and R28.2.9; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is due to incorrect input validation in LookupProcessor.cpp in the ICU Layout Engine, which allows attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted font file.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-5907",
          "url": "https://www.suse.com/security/cve/CVE-2013-5907"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2013-5907",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2013-5907",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2013-5907"
    },
    {
      "cve": "CVE-2013-5910",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-5910"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45, Java SE Embedded 7u45, and OpenJDK 7 allows remote attackers to affect integrity via unknown vectors related to Security.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that CanonicalizerBase.java in the XML canonicalizer allows untrusted code to access mutable byte arrays.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-5910",
          "url": "https://www.suse.com/security/cve/CVE-2013-5910"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2013-5910",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2013-5910",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2013-5910"
    },
    {
      "cve": "CVE-2013-6629",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-6629"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48, Ghostscript, and other products, does not check for certain duplications of component data during the reading of segments that follow Start Of Scan (SOS) JPEG markers, which allows remote attackers to obtain sensitive information from uninitialized memory locations via a crafted JPEG image.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-6629",
          "url": "https://www.suse.com/security/cve/CVE-2013-6629"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 850430 for CVE-2013-6629",
          "url": "https://bugzilla.suse.com/850430"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2013-6629",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2013-6629",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2013-6629",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2013-6629",
          "url": "https://bugzilla.suse.com/877430"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 880246 for CVE-2013-6629",
          "url": "https://bugzilla.suse.com/880246"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2013-6629"
    },
    {
      "cve": "CVE-2013-6954",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2013-6954"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via (1) a PLTE chunk of zero bytes or (2) a NULL palette, related to pngrtran.c and pngset.c.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2013-6954",
          "url": "https://www.suse.com/security/cve/CVE-2013-6954"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 856522 for CVE-2013-6954",
          "url": "https://bugzilla.suse.com/856522"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2013-6954",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2013-6954",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2013-6954",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2013-6954",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2013-6954"
    },
    {
      "cve": "CVE-2014-0368",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0368"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45, and Java SE Embedded 7u45, allows remote attackers to affect confidentiality via unknown vectors related to Networking.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to incorrect permission checks when listening on a socket, which allows attackers to escape the sandbox.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0368",
          "url": "https://www.suse.com/security/cve/CVE-2014-0368"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2014-0368",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0368",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2014-0368"
    },
    {
      "cve": "CVE-2014-0373",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0373"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45, and OpenJDK 7, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Serviceability.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to throwing of an incorrect exception when SnmpStatusException should have been used in the SNMP implementation, which allows attackers to escape the sandbox.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0373",
          "url": "https://www.suse.com/security/cve/CVE-2014-0373"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2014-0373",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0373",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "important"
        }
      ],
      "title": "CVE-2014-0373"
    },
    {
      "cve": "CVE-2014-0375",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0375"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5898 and CVE-2014-0403.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0375",
          "url": "https://www.suse.com/security/cve/CVE-2014-0375"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0375",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2014-0375"
    },
    {
      "cve": "CVE-2014-0376",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0376"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect integrity via vectors related to JAXP.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to an improper check for \"code permissions when creating document builder factories.\"",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0376",
          "url": "https://www.suse.com/security/cve/CVE-2014-0376"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2014-0376",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0376",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2014-0376"
    },
    {
      "cve": "CVE-2014-0387",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0387"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and Java SE 7u45, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0387",
          "url": "https://www.suse.com/security/cve/CVE-2014-0387"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0387",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "important"
        }
      ],
      "title": "CVE-2014-0387"
    },
    {
      "cve": "CVE-2014-0403",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0403"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5898 and CVE-2014-0375.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0403",
          "url": "https://www.suse.com/security/cve/CVE-2014-0403"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0403",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2014-0403"
    },
    {
      "cve": "CVE-2014-0410",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0410"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0415, CVE-2014-0418, and CVE-2014-0424.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0410",
          "url": "https://www.suse.com/security/cve/CVE-2014-0410"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0410",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0410"
    },
    {
      "cve": "CVE-2014-0411",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0411"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; JRockit R27.7.7 and R28.2.9; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that this issue allows remote attackers to obtain sensitive information about encryption keys via a timing discrepancy during the TLS/SSL handshake.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0411",
          "url": "https://www.suse.com/security/cve/CVE-2014-0411"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2014-0411",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0411",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "low"
        }
      ],
      "title": "CVE-2014-0411"
    },
    {
      "cve": "CVE-2014-0415",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0415"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0410, CVE-2014-0418, and CVE-2014-0424.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0415",
          "url": "https://www.suse.com/security/cve/CVE-2014-0415"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0415",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0415"
    },
    {
      "cve": "CVE-2014-0416",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0416"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect integrity via vectors related to JAAS.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to how principals are set for the Subject class, which allows attackers to escape the sandbox using deserialization of a crafted Subject instance.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0416",
          "url": "https://www.suse.com/security/cve/CVE-2014-0416"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2014-0416",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0416",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2014-0416"
    },
    {
      "cve": "CVE-2014-0417",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0417"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; JavaFX 2.2.45; and Java SE Embedded 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0417",
          "url": "https://www.suse.com/security/cve/CVE-2014-0417"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0417",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0417"
    },
    {
      "cve": "CVE-2014-0422",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0422"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JNDI.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to missing package access checks in the Naming / JNDI component, which allows attackers to escape the sandbox.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0422",
          "url": "https://www.suse.com/security/cve/CVE-2014-0422"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2014-0422",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0422",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0422"
    },
    {
      "cve": "CVE-2014-0423",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0423"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; JRockit R27.7.7 and R28.2.9; Java SE Embedded 7u45; and OpenJDK 7 allows remote authenticated users to affect confidentiality and availability via unknown vectors related to Beans.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that this issue is an XML External Entity (XXE) vulnerability in DocumentHandler.java, related to Beans decoding.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0423",
          "url": "https://www.suse.com/security/cve/CVE-2014-0423"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2014-0423",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0423",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2014-0423"
    },
    {
      "cve": "CVE-2014-0424",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0424"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0410, CVE-2014-0415, and CVE-2014-0418.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0424",
          "url": "https://www.suse.com/security/cve/CVE-2014-0424"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0424",
          "url": "https://bugzilla.suse.com/862064"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "important"
        }
      ],
      "title": "CVE-2014-0424"
    },
    {
      "cve": "CVE-2014-0428",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0428"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to \"insufficient security checks in IIOP streams,\" which allows attackers to escape the sandbox.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0428",
          "url": "https://www.suse.com/security/cve/CVE-2014-0428"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 858818 for CVE-2014-0428",
          "url": "https://bugzilla.suse.com/858818"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 862064 for CVE-2014-0428",
          "url": "https://bugzilla.suse.com/862064"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0428",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0428",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0428"
    },
    {
      "cve": "CVE-2014-0429",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0429"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0429",
          "url": "https://www.suse.com/security/cve/CVE-2014-0429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-0429",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-0429",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0429",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0429",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0429"
    },
    {
      "cve": "CVE-2014-0446",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0446"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0446",
          "url": "https://www.suse.com/security/cve/CVE-2014-0446"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-0446",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-0446",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0446",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0446",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0446"
    },
    {
      "cve": "CVE-2014-0449",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0449"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0449",
          "url": "https://www.suse.com/security/cve/CVE-2014-0449"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0449",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0449",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2014-0449"
    },
    {
      "cve": "CVE-2014-0451",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0451"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT, a different vulnerability than CVE-2014-2412.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0451",
          "url": "https://www.suse.com/security/cve/CVE-2014-0451"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-0451",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-0451",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0451",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0451",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0451"
    },
    {
      "cve": "CVE-2014-0452",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0452"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS, a different vulnerability than CVE-2014-0458 and CVE-2014-2423.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0452",
          "url": "https://www.suse.com/security/cve/CVE-2014-0452"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-0452",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-0452",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0452",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0452",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0452"
    },
    {
      "cve": "CVE-2014-0453",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0453"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Security.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0453",
          "url": "https://www.suse.com/security/cve/CVE-2014-0453"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-0453",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-0453",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0453",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0453",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0453"
    },
    {
      "cve": "CVE-2014-0457",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0457"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u61, SE 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0457",
          "url": "https://www.suse.com/security/cve/CVE-2014-0457"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-0457",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-0457",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0457",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0457",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0457"
    },
    {
      "cve": "CVE-2014-0458",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0458"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS, a different vulnerability than CVE-2014-0452 and CVE-2014-2423.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0458",
          "url": "https://www.suse.com/security/cve/CVE-2014-0458"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-0458",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-0458",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0458",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0458",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0458"
    },
    {
      "cve": "CVE-2014-0459",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0459"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect availability via unknown vectors related to 2D.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0459",
          "url": "https://www.suse.com/security/cve/CVE-2014-0459"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-0459",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-0459",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0459",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0459",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0459"
    },
    {
      "cve": "CVE-2014-0460",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0460"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality and integrity via vectors related to JNDI.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0460",
          "url": "https://www.suse.com/security/cve/CVE-2014-0460"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-0460",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-0460",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0460",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0460",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0460"
    },
    {
      "cve": "CVE-2014-0461",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0461"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0461",
          "url": "https://www.suse.com/security/cve/CVE-2014-0461"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-0461",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-0461",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0461",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0461",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-0461"
    },
    {
      "cve": "CVE-2014-0878",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-0878"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "The IBMSecureRandom component in the IBMJCE and IBMSecureRandom cryptographic providers in IBM SDK Java Technology Edition 5.0 before Service Refresh 16 FP6, 6 before Service Refresh 16, 6.0.1 before Service Refresh 8, 7 before Service Refresh 7, and 7R1 before Service Refresh 1 makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms by predicting the random number generator\u0027s output.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-0878",
          "url": "https://www.suse.com/security/cve/CVE-2014-0878"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-0878",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-0878",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "important"
        }
      ],
      "title": "CVE-2014-0878"
    },
    {
      "cve": "CVE-2014-1876",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-1876"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "The unpacker::redirect_stdio function in unpack.cpp in unpack200 in OpenJDK 6, 7, and 8; Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 does not securely create temporary files when a log file cannot be opened, which allows local users to overwrite arbitrary files via a symlink attack on /tmp/unpack.log.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-1876",
          "url": "https://www.suse.com/security/cve/CVE-2014-1876"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 863305 for CVE-2014-1876",
          "url": "https://bugzilla.suse.com/863305"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-1876",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-1876",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-1876",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-1876",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2014-1876"
    },
    {
      "cve": "CVE-2014-2398",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-2398"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and JRockit R27.8.1 and R28.3.1 allows remote authenticated users to affect integrity via unknown vectors related to Javadoc.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-2398",
          "url": "https://www.suse.com/security/cve/CVE-2014-2398"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-2398",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-2398",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-2398",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-2398",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "low"
        }
      ],
      "title": "CVE-2014-2398"
    },
    {
      "cve": "CVE-2014-2401",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-2401"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality via unknown vectors related to 2D.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-2401",
          "url": "https://www.suse.com/security/cve/CVE-2014-2401"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-2401",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-2401",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2014-2401"
    },
    {
      "cve": "CVE-2014-2409",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-2409"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-2409",
          "url": "https://www.suse.com/security/cve/CVE-2014-2409"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-2409",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-2409",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2014-2409"
    },
    {
      "cve": "CVE-2014-2412",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-2412"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, SE 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT, a different vulnerability than CVE-2014-0451.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-2412",
          "url": "https://www.suse.com/security/cve/CVE-2014-2412"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-2412",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-2412",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-2412",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-2412",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-2412"
    },
    {
      "cve": "CVE-2014-2414",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-2414"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAXB.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-2414",
          "url": "https://www.suse.com/security/cve/CVE-2014-2414"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-2414",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-2414",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-2414",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-2414",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-2414"
    },
    {
      "cve": "CVE-2014-2420",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-2420"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect integrity via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-2420",
          "url": "https://www.suse.com/security/cve/CVE-2014-2420"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-2420",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-2420",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "low"
        }
      ],
      "title": "CVE-2014-2420"
    },
    {
      "cve": "CVE-2014-2421",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-2421"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-2421",
          "url": "https://www.suse.com/security/cve/CVE-2014-2421"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-2421",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-2421",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-2421",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-2421",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-2421"
    },
    {
      "cve": "CVE-2014-2423",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-2423"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS, a different vulnerability than CVE-2014-0452 and CVE-2014-0458.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-2423",
          "url": "https://www.suse.com/security/cve/CVE-2014-2423"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-2423",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-2423",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-2423",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-2423",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-2423"
    },
    {
      "cve": "CVE-2014-2427",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-2427"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Sound.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-2427",
          "url": "https://www.suse.com/security/cve/CVE-2014-2427"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873872 for CVE-2014-2427",
          "url": "https://bugzilla.suse.com/873872"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 873873 for CVE-2014-2427",
          "url": "https://bugzilla.suse.com/873873"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-2427",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-2427",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-2427"
    },
    {
      "cve": "CVE-2014-2428",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-2428"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-2428",
          "url": "https://www.suse.com/security/cve/CVE-2014-2428"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877429 for CVE-2014-2428",
          "url": "https://bugzilla.suse.com/877429"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 877430 for CVE-2014-2428",
          "url": "https://bugzilla.suse.com/877430"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "important"
        }
      ],
      "title": "CVE-2014-2428"
    },
    {
      "cve": "CVE-2014-3065",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-3065"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in IBM Java Runtime Environment (JRE) 7 R1 before SR2 (7.1.2.0), 7 before SR8 (7.0.8.0), 6 R1 before SR8 FP2 (6.1.8.2), 6 before SR16 FP2 (6.0.16.2), and before SR16 FP8 (5.0.16.8) allows local users to execute arbitrary code via vectors related to the shared classes cache.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-3065",
          "url": "https://www.suse.com/security/cve/CVE-2014-3065"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-3065",
          "url": "https://bugzilla.suse.com/904889"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 930365 for CVE-2014-3065",
          "url": "https://bugzilla.suse.com/930365"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-3065"
    },
    {
      "cve": "CVE-2014-3566",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-3566"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the \"POODLE\" issue.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-3566",
          "url": "https://www.suse.com/security/cve/CVE-2014-3566"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1011293 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/1011293"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 1031023 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/1031023"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901223 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/901223"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901254 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/901254"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901277 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/901277"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901748 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/901748"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901757 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/901757"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901759 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/901759"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901889 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/901889"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901968 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/901968"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 902229 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/902229"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 902233 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/902233"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 902476 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/902476"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 903405 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/903405"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 903684 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/903684"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/904889"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 905106 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/905106"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 914041 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/914041"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 994144 for CVE-2014-3566",
          "url": "https://bugzilla.suse.com/994144"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 3.4,
            "baseSeverity": "LOW",
            "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N",
            "version": "3.1"
          },
          "products": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-3566"
    },
    {
      "cve": "CVE-2014-4209",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-4209"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality and integrity via vectors related to JMX.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-4209",
          "url": "https://www.suse.com/security/cve/CVE-2014-4209"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 887530 for CVE-2014-4209",
          "url": "https://bugzilla.suse.com/887530"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891699 for CVE-2014-4209",
          "url": "https://bugzilla.suse.com/891699"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891700 for CVE-2014-4209",
          "url": "https://bugzilla.suse.com/891700"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891701 for CVE-2014-4209",
          "url": "https://bugzilla.suse.com/891701"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-4209"
    },
    {
      "cve": "CVE-2014-4218",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-4218"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect integrity via unknown vectors related to Libraries.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-4218",
          "url": "https://www.suse.com/security/cve/CVE-2014-4218"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 887530 for CVE-2014-4218",
          "url": "https://bugzilla.suse.com/887530"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891699 for CVE-2014-4218",
          "url": "https://bugzilla.suse.com/891699"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891700 for CVE-2014-4218",
          "url": "https://bugzilla.suse.com/891700"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891701 for CVE-2014-4218",
          "url": "https://bugzilla.suse.com/891701"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-4218"
    },
    {
      "cve": "CVE-2014-4219",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-4219"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-4219",
          "url": "https://www.suse.com/security/cve/CVE-2014-4219"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 887530 for CVE-2014-4219",
          "url": "https://bugzilla.suse.com/887530"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891699 for CVE-2014-4219",
          "url": "https://bugzilla.suse.com/891699"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891700 for CVE-2014-4219",
          "url": "https://bugzilla.suse.com/891700"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891701 for CVE-2014-4219",
          "url": "https://bugzilla.suse.com/891701"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-4219"
    },
    {
      "cve": "CVE-2014-4227",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-4227"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-4227",
          "url": "https://www.suse.com/security/cve/CVE-2014-4227"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 887530 for CVE-2014-4227",
          "url": "https://bugzilla.suse.com/887530"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891700 for CVE-2014-4227",
          "url": "https://bugzilla.suse.com/891700"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891701 for CVE-2014-4227",
          "url": "https://bugzilla.suse.com/891701"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-4227"
    },
    {
      "cve": "CVE-2014-4244",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-4244"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5, and JRockit R27.8.2 and JRockit R28.3.2, allows remote attackers to affect confidentiality and integrity via unknown vectors related to Security.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-4244",
          "url": "https://www.suse.com/security/cve/CVE-2014-4244"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 887530 for CVE-2014-4244",
          "url": "https://bugzilla.suse.com/887530"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891699 for CVE-2014-4244",
          "url": "https://bugzilla.suse.com/891699"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891700 for CVE-2014-4244",
          "url": "https://bugzilla.suse.com/891700"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891701 for CVE-2014-4244",
          "url": "https://bugzilla.suse.com/891701"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-4244"
    },
    {
      "cve": "CVE-2014-4252",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-4252"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality via unknown vectors related to Security.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-4252",
          "url": "https://www.suse.com/security/cve/CVE-2014-4252"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 887530 for CVE-2014-4252",
          "url": "https://bugzilla.suse.com/887530"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891699 for CVE-2014-4252",
          "url": "https://bugzilla.suse.com/891699"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891700 for CVE-2014-4252",
          "url": "https://bugzilla.suse.com/891700"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891701 for CVE-2014-4252",
          "url": "https://bugzilla.suse.com/891701"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-4252"
    },
    {
      "cve": "CVE-2014-4262",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-4262"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-4262",
          "url": "https://www.suse.com/security/cve/CVE-2014-4262"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 887530 for CVE-2014-4262",
          "url": "https://bugzilla.suse.com/887530"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891699 for CVE-2014-4262",
          "url": "https://bugzilla.suse.com/891699"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891700 for CVE-2014-4262",
          "url": "https://bugzilla.suse.com/891700"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891701 for CVE-2014-4262",
          "url": "https://bugzilla.suse.com/891701"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-4262"
    },
    {
      "cve": "CVE-2014-4263",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-4263"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5, and JRockit R27.8.2 and R28.3.2, allows remote attackers to affect confidentiality and integrity via unknown vectors related to \"Diffie-Hellman key agreement.\"",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-4263",
          "url": "https://www.suse.com/security/cve/CVE-2014-4263"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 887530 for CVE-2014-4263",
          "url": "https://bugzilla.suse.com/887530"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891699 for CVE-2014-4263",
          "url": "https://bugzilla.suse.com/891699"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891700 for CVE-2014-4263",
          "url": "https://bugzilla.suse.com/891700"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891701 for CVE-2014-4263",
          "url": "https://bugzilla.suse.com/891701"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-4263"
    },
    {
      "cve": "CVE-2014-4265",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-4265"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u75, 7u60, and 8u5 allows remote attackers to affect integrity via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-4265",
          "url": "https://www.suse.com/security/cve/CVE-2014-4265"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 887530 for CVE-2014-4265",
          "url": "https://bugzilla.suse.com/887530"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891700 for CVE-2014-4265",
          "url": "https://bugzilla.suse.com/891700"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891701 for CVE-2014-4265",
          "url": "https://bugzilla.suse.com/891701"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-4265"
    },
    {
      "cve": "CVE-2014-4268",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-4268"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality via unknown vectors related to Swing.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-4268",
          "url": "https://www.suse.com/security/cve/CVE-2014-4268"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 887530 for CVE-2014-4268",
          "url": "https://bugzilla.suse.com/887530"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891699 for CVE-2014-4268",
          "url": "https://bugzilla.suse.com/891699"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891700 for CVE-2014-4268",
          "url": "https://bugzilla.suse.com/891700"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 891701 for CVE-2014-4268",
          "url": "https://bugzilla.suse.com/891701"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-4268"
    },
    {
      "cve": "CVE-2014-4288",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-4288"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-6493, CVE-2014-6503, and CVE-2014-6532.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-4288",
          "url": "https://www.suse.com/security/cve/CVE-2014-4288"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-4288",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-4288",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-4288",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-4288",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-4288"
    },
    {
      "cve": "CVE-2014-6456",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6456"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 7u67 and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6456",
          "url": "https://www.suse.com/security/cve/CVE-2014-6456"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6456",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6456",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6456",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6456",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6456"
    },
    {
      "cve": "CVE-2014-6457",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6457"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3, and R28.3.3 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6457",
          "url": "https://www.suse.com/security/cve/CVE-2014-6457"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6457",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6457",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6457",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6457",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6457"
    },
    {
      "cve": "CVE-2014-6458",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6458"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6458",
          "url": "https://www.suse.com/security/cve/CVE-2014-6458"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6458",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6458",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6458",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6458",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6458"
    },
    {
      "cve": "CVE-2014-6466",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6466"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Internet Explorer, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6466",
          "url": "https://www.suse.com/security/cve/CVE-2014-6466"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6466",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6466",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6466",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6466",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6466"
    },
    {
      "cve": "CVE-2014-6476",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6476"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 7u67 and 8u20 allows remote attackers to affect integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2014-6527.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6476",
          "url": "https://www.suse.com/security/cve/CVE-2014-6476"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6476",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6476",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6476",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6476",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6476"
    },
    {
      "cve": "CVE-2014-6492",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6492"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6492",
          "url": "https://www.suse.com/security/cve/CVE-2014-6492"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6492",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6492",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6492",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6492",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6492"
    },
    {
      "cve": "CVE-2014-6493",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6493"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6503, and CVE-2014-6532.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6493",
          "url": "https://www.suse.com/security/cve/CVE-2014-6493"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6493",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6493",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6493",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6493",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6493"
    },
    {
      "cve": "CVE-2014-6502",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6502"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect integrity via unknown vectors related to Libraries.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6502",
          "url": "https://www.suse.com/security/cve/CVE-2014-6502"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6502",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6502",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6502",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6502",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6502"
    },
    {
      "cve": "CVE-2014-6503",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6503"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6493, and CVE-2014-6532.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6503",
          "url": "https://www.suse.com/security/cve/CVE-2014-6503"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6503",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6503",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6503",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6503",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6503"
    },
    {
      "cve": "CVE-2014-6506",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6506"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6506",
          "url": "https://www.suse.com/security/cve/CVE-2014-6506"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6506",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6506",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6506",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6506",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6506"
    },
    {
      "cve": "CVE-2014-6511",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6511"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality via unknown vectors related to 2D.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6511",
          "url": "https://www.suse.com/security/cve/CVE-2014-6511"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6511",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6511",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6511",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6511",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6511"
    },
    {
      "cve": "CVE-2014-6512",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6512"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and R28.3.3 allows remote attackers to affect integrity via unknown vectors related to Libraries.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6512",
          "url": "https://www.suse.com/security/cve/CVE-2014-6512"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6512",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6512",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6512",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6512",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6512"
    },
    {
      "cve": "CVE-2014-6513",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6513"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6513",
          "url": "https://www.suse.com/security/cve/CVE-2014-6513"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6513",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6513",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6513",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6513",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6513"
    },
    {
      "cve": "CVE-2014-6515",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6515"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect integrity via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6515",
          "url": "https://www.suse.com/security/cve/CVE-2014-6515"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6515",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6515",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6515",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6515",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6515"
    },
    {
      "cve": "CVE-2014-6527",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6527"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 7u67 and 8u20 allows remote attackers to affect integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2014-6476.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6527",
          "url": "https://www.suse.com/security/cve/CVE-2014-6527"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6527",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6527",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6527",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6527",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6527"
    },
    {
      "cve": "CVE-2014-6531",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6531"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality via unknown vectors related to Libraries.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6531",
          "url": "https://www.suse.com/security/cve/CVE-2014-6531"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6531",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6531",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6531",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6531",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6531"
    },
    {
      "cve": "CVE-2014-6532",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6532"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6493, and CVE-2014-6503.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6532",
          "url": "https://www.suse.com/security/cve/CVE-2014-6532"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6532",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6532",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6532",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6532",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6532"
    },
    {
      "cve": "CVE-2014-6558",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-6558"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and JRockit R28.3.3 allows remote attackers to affect integrity via unknown vectors related to Security.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-6558",
          "url": "https://www.suse.com/security/cve/CVE-2014-6558"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901239 for CVE-2014-6558",
          "url": "https://bugzilla.suse.com/901239"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901242 for CVE-2014-6558",
          "url": "https://bugzilla.suse.com/901242"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 901246 for CVE-2014-6558",
          "url": "https://bugzilla.suse.com/901246"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 904889 for CVE-2014-6558",
          "url": "https://bugzilla.suse.com/904889"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-6558"
    },
    {
      "cve": "CVE-2014-8891",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-8891"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in the Java Virtual Machine (JVM) in IBM SDK, Java Technology Edition 5.0 before SR16-FP9, 6 before SR16-FP3, 6R1 before SR8-FP3, 7 before SR8-FP10, and 7R1 before SR2-FP10 allows remote attackers to escape the Java sandbox and execute arbitrary code via unspecified vectors related to the security manager.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-8891",
          "url": "https://www.suse.com/security/cve/CVE-2014-8891"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 916266 for CVE-2014-8891",
          "url": "https://bugzilla.suse.com/916266"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2014-8891"
    },
    {
      "cve": "CVE-2014-8892",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2014-8892"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in the Java Virtual Machine (JVM) in IBM SDK, Java Technology Edition 5.0 before SR16-FP9, 6 before SR16-FP3, 6R1 before SR8-FP3, 7 before SR8-FP10, and 7R1 before SR2-FP10 allows remote attackers to bypass intended access permissions and obtain sensitive information via unspecified vectors related to the security manager.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2014-8892",
          "url": "https://www.suse.com/security/cve/CVE-2014-8892"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 916265 for CVE-2014-8892",
          "url": "https://bugzilla.suse.com/916265"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "important"
        }
      ],
      "title": "CVE-2014-8892"
    },
    {
      "cve": "CVE-2015-0138",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-0138"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "GSKit in IBM Tivoli Directory Server (ITDS) 6.0 before 6.0.0.73-ISS-ITDS-IF0073, 6.1 before 6.1.0.66-ISS-ITDS-IF0066, 6.2 before 6.2.0.42-ISS-ITDS-IF0042, and 6.3 before 6.3.0.35-ISS-ITDS-IF0035 and IBM Security Directory Server (ISDS) 6.3.1 before 6.3.1.9-ISS-ISDS-IF0009 does not properly restrict TLS state transitions, which makes it easier for remote attackers to conduct cipher-downgrade attacks to EXPORT_RSA ciphers via crafted TLS traffic, related to the \"FREAK\" issue, a different vulnerability than CVE-2015-0204.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-0138",
          "url": "https://www.suse.com/security/cve/CVE-2015-0138"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 952088 for CVE-2015-0138",
          "url": "https://bugzilla.suse.com/952088"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2015-0138"
    },
    {
      "cve": "CVE-2015-0192",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-0192"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in IBM Java 8 before SR1, 7 R1 before SR2 FP11, 7 before SR9, 6 R1 before SR8 FP4, 6 before SR16 FP4, and 5.0 before SR16 FP10 allows remote attackers to gain privileges via unknown vectors related to the Java Virtual Machine.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-0192",
          "url": "https://www.suse.com/security/cve/CVE-2015-0192"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 952088 for CVE-2015-0192",
          "url": "https://bugzilla.suse.com/952088"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2015-0192"
    },
    {
      "cve": "CVE-2015-0204",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-0204"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "The ssl3_get_key_exchange function in s3_clnt.c in OpenSSL before 0.9.8zd, 1.0.0 before 1.0.0p, and 1.0.1 before 1.0.1k allows remote SSL servers to conduct RSA-to-EXPORT_RSA downgrade attacks and facilitate brute-force decryption by offering a weak ephemeral RSA key in a noncompliant role, related to the \"FREAK\" issue.  NOTE: the scope of this CVE is only client code based on OpenSSL, not EXPORT_RSA issues associated with servers or other TLS implementations.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-0204",
          "url": "https://www.suse.com/security/cve/CVE-2015-0204"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 912014 for CVE-2015-0204",
          "url": "https://bugzilla.suse.com/912014"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 920482 for CVE-2015-0204",
          "url": "https://bugzilla.suse.com/920482"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 920484 for CVE-2015-0204",
          "url": "https://bugzilla.suse.com/920484"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 927591 for CVE-2015-0204",
          "url": "https://bugzilla.suse.com/927591"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 927623 for CVE-2015-0204",
          "url": "https://bugzilla.suse.com/927623"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 936787 for CVE-2015-0204",
          "url": "https://bugzilla.suse.com/936787"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 952088 for CVE-2015-0204",
          "url": "https://bugzilla.suse.com/952088"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2015-0204"
    },
    {
      "cve": "CVE-2015-0458",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-0458"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in in Oracle Java SE 6u91, 7u76, and 8u40 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-0458",
          "url": "https://www.suse.com/security/cve/CVE-2015-0458"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 927591 for CVE-2015-0458",
          "url": "https://bugzilla.suse.com/927591"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "important"
        }
      ],
      "title": "CVE-2015-0458"
    },
    {
      "cve": "CVE-2015-0459",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-0459"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and JavaFX 2.2.76, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D, a different vulnerability than CVE-2015-0491.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-0459",
          "url": "https://www.suse.com/security/cve/CVE-2015-0459"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 927591 for CVE-2015-0459",
          "url": "https://bugzilla.suse.com/927591"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 932310 for CVE-2015-0459",
          "url": "https://bugzilla.suse.com/932310"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2015-0459"
    },
    {
      "cve": "CVE-2015-0469",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-0469"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-0469",
          "url": "https://www.suse.com/security/cve/CVE-2015-0469"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 927591 for CVE-2015-0469",
          "url": "https://bugzilla.suse.com/927591"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 932310 for CVE-2015-0469",
          "url": "https://bugzilla.suse.com/932310"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2015-0469"
    },
    {
      "cve": "CVE-2015-0477",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-0477"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect integrity via unknown vectors related to Beans.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-0477",
          "url": "https://www.suse.com/security/cve/CVE-2015-0477"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 927591 for CVE-2015-0477",
          "url": "https://bugzilla.suse.com/927591"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2015-0477"
    },
    {
      "cve": "CVE-2015-0478",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-0478"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and JRockit R28.3.5, allows remote attackers to affect confidentiality via vectors related to JCE.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-0478",
          "url": "https://www.suse.com/security/cve/CVE-2015-0478"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 927591 for CVE-2015-0478",
          "url": "https://bugzilla.suse.com/927591"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 944456 for CVE-2015-0478",
          "url": "https://bugzilla.suse.com/944456"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2015-0478"
    },
    {
      "cve": "CVE-2015-0480",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-0480"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect integrity and availability via unknown vectors related to Tools.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-0480",
          "url": "https://www.suse.com/security/cve/CVE-2015-0480"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 927591 for CVE-2015-0480",
          "url": "https://bugzilla.suse.com/927591"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2015-0480"
    },
    {
      "cve": "CVE-2015-0488",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-0488"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and JRockit R28.3.5, allows remote attackers to affect availability via vectors related to JSSE.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-0488",
          "url": "https://www.suse.com/security/cve/CVE-2015-0488"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 927591 for CVE-2015-0488",
          "url": "https://bugzilla.suse.com/927591"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "moderate"
        }
      ],
      "title": "CVE-2015-0488"
    },
    {
      "cve": "CVE-2015-0491",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-0491"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and Java FX 2.2.76, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D, a different vulnerability than CVE-2015-0459.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-0491",
          "url": "https://www.suse.com/security/cve/CVE-2015-0491"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 927591 for CVE-2015-0491",
          "url": "https://bugzilla.suse.com/927591"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 932310 for CVE-2015-0491",
          "url": "https://bugzilla.suse.com/932310"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2015-0491"
    },
    {
      "cve": "CVE-2015-1914",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-1914"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "IBM Java 7 R1 before SR3, 7 before SR9, 6 R1 before SR8 FP4, 6 before SR16 FP4, and 5.0 before SR16 FP10 allows remote attackers to bypass \"permission checks\" and obtain sensitive information via vectors related to the Java Virtual Machine.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-1914",
          "url": "https://www.suse.com/security/cve/CVE-2015-1914"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 952088 for CVE-2015-1914",
          "url": "https://bugzilla.suse.com/952088"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "critical"
        }
      ],
      "title": "CVE-2015-1914"
    },
    {
      "cve": "CVE-2015-2808",
      "ids": [
        {
          "system_name": "SUSE CVE Page",
          "text": "https://www.suse.com/security/cve/CVE-2015-2808"
        }
      ],
      "notes": [
        {
          "category": "general",
          "text": "The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initialization phase, which makes it easier for remote attackers to conduct plaintext-recovery attacks against the initial bytes of a stream by sniffing network traffic that occasionally relies on keys affected by the Invariance Weakness, and then using a brute-force approach involving LSB values, aka the \"Bar Mitzvah\" issue.",
          "title": "CVE description"
        }
      ],
      "product_status": {
        "recommended": [
          "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
          "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "CVE-2015-2808",
          "url": "https://www.suse.com/security/cve/CVE-2015-2808"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 925378 for CVE-2015-2808",
          "url": "https://bugzilla.suse.com/925378"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 938248 for CVE-2015-2808",
          "url": "https://bugzilla.suse.com/938248"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 938895 for CVE-2015-2808",
          "url": "https://bugzilla.suse.com/938895"
        },
        {
          "category": "external",
          "summary": "SUSE Bug 952088 for CVE-2015-2808",
          "url": "https://bugzilla.suse.com/952088"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
          "product_ids": [
            "SUSE Manager 1.7:java-1_6_0-ibm-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-devel-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-fonts-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-jdbc-1.6.0_sr16.2-0.3.1.x86_64",
            "SUSE Manager 1.7:java-1_6_0-ibm-plugin-1.6.0_sr16.2-0.3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "date": "2014-11-19T10:21:52Z",
          "details": "important"
        }
      ],
      "title": "CVE-2015-2808"
    }
  ]
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…