suse-su-2015:1874-2
Vulnerability from csaf_suse
Published
2015-10-23 15:08
Modified
2015-10-23 15:08
Summary
Security update for java-1_7_0-openjdk
Notes
Title of the patch
Security update for java-1_7_0-openjdk
Description of the patch
java-1_7_0-openjdk was updated to version 7u91 to fix 17 security issues.
These security issues were fixed:
- CVE-2015-4843: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries (bsc#951376).
- CVE-2015-4842: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality via vectors related to JAXP (bsc#951376).
- CVE-2015-4840: Unspecified vulnerability in Oracle Java SE 7u85 and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality via unknown vectors related to 2D (bsc#951376).
- CVE-2015-4872: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allowed remote attackers to affect integrity via unknown vectors related to Security (bsc#951376).
- CVE-2015-4860: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI, a different vulnerability than CVE-2015-4883 (bsc#951376).
- CVE-2015-4844: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D (bsc#951376).
- CVE-2015-4883: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI, a different vulnerability than CVE-2015-4860 (bsc#951376).
- CVE-2015-4893: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allowed remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4911 (bsc#951376).
- CVE-2015-4911: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allowed remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4893 (bsc#951376).
- CVE-2015-4882: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect availability via vectors related to CORBA (bsc#951376).
- CVE-2015-4881: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA, a different vulnerability than CVE-2015-4835 (bsc#951376).
- CVE-2015-4734: Unspecified vulnerability in Oracle Java SE 6u101, 7u85 and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality via vectors related to JGSS (bsc#951376).
- CVE-2015-4806: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries (bsc#951376).
- CVE-2015-4805: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Serialization (bsc#951376).
- CVE-2015-4803: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allowed remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4893 and CVE-2015-4911 (bsc#951376).
- CVE-2015-4835: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA, a different vulnerability than CVE-2015-4881 (bsc#951376).
- CVE-2015-4903: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality via vectors related to RMI (bsc#951376).
Patchnames
SUSE-SLE-DESKTOP-12-2015-781,SUSE-SLE-SERVER-12-2015-781
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
{ "document": { "aggregate_severity": { "namespace": "https://www.suse.com/support/security/rating/", "text": "important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright 2024 SUSE LLC. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Security update for java-1_7_0-openjdk", "title": "Title of the patch" }, { "category": "description", "text": "java-1_7_0-openjdk was updated to version 7u91 to fix 17 security issues.\n\nThese security issues were fixed:\n- CVE-2015-4843: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries (bsc#951376).\n- CVE-2015-4842: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality via vectors related to JAXP (bsc#951376).\n- CVE-2015-4840: Unspecified vulnerability in Oracle Java SE 7u85 and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality via unknown vectors related to 2D (bsc#951376).\n- CVE-2015-4872: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allowed remote attackers to affect integrity via unknown vectors related to Security (bsc#951376).\n- CVE-2015-4860: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI, a different vulnerability than CVE-2015-4883 (bsc#951376).\n- CVE-2015-4844: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D (bsc#951376).\n- CVE-2015-4883: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI, a different vulnerability than CVE-2015-4860 (bsc#951376).\n- CVE-2015-4893: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allowed remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4911 (bsc#951376).\n- CVE-2015-4911: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allowed remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4893 (bsc#951376).\n- CVE-2015-4882: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect availability via vectors related to CORBA (bsc#951376).\n- CVE-2015-4881: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA, a different vulnerability than CVE-2015-4835 (bsc#951376).\n- CVE-2015-4734: Unspecified vulnerability in Oracle Java SE 6u101, 7u85 and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality via vectors related to JGSS (bsc#951376).\n- CVE-2015-4806: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries (bsc#951376).\n- CVE-2015-4805: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Serialization (bsc#951376).\n- CVE-2015-4803: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allowed remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4893 and CVE-2015-4911 (bsc#951376).\n- CVE-2015-4835: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA, a different vulnerability than CVE-2015-4881 (bsc#951376).\n- CVE-2015-4903: Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allowed remote attackers to affect confidentiality via vectors related to RMI (bsc#951376).\n ", "title": "Description of the patch" }, { "category": "details", "text": "SUSE-SLE-DESKTOP-12-2015-781,SUSE-SLE-SERVER-12-2015-781", "title": "Patchnames" }, { "category": "legal_disclaimer", "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).", "title": "Terms of use" } ], "publisher": { "category": "vendor", "contact_details": "https://www.suse.com/support/security/contact/", "name": "SUSE Product Security Team", "namespace": "https://www.suse.com/" }, "references": [ { "category": "external", "summary": "SUSE ratings", "url": "https://www.suse.com/support/security/rating/" }, { "category": "self", "summary": "URL of this CSAF notice", "url": "https://ftp.suse.com/pub/projects/security/csaf/suse-su-2015_1874-2.json" }, { "category": "self", "summary": "URL for SUSE-SU-2015:1874-2", "url": "https://www.suse.com/support/update/announcement/2015/suse-su-20151874-2/" }, { "category": "self", "summary": "E-Mail link for SUSE-SU-2015:1874-2", "url": "https://lists.suse.com/pipermail/sle-security-updates/2015-November/001659.html" }, { "category": "self", "summary": "SUSE Bug 951376", "url": "https://bugzilla.suse.com/951376" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4734 page", "url": "https://www.suse.com/security/cve/CVE-2015-4734/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4803 page", "url": "https://www.suse.com/security/cve/CVE-2015-4803/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4805 page", "url": "https://www.suse.com/security/cve/CVE-2015-4805/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4806 page", "url": "https://www.suse.com/security/cve/CVE-2015-4806/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4835 page", "url": "https://www.suse.com/security/cve/CVE-2015-4835/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4840 page", "url": "https://www.suse.com/security/cve/CVE-2015-4840/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4842 page", "url": "https://www.suse.com/security/cve/CVE-2015-4842/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4843 page", "url": "https://www.suse.com/security/cve/CVE-2015-4843/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4844 page", "url": "https://www.suse.com/security/cve/CVE-2015-4844/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4860 page", "url": "https://www.suse.com/security/cve/CVE-2015-4860/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4872 page", "url": "https://www.suse.com/security/cve/CVE-2015-4872/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4881 page", "url": "https://www.suse.com/security/cve/CVE-2015-4881/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4882 page", "url": "https://www.suse.com/security/cve/CVE-2015-4882/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4883 page", "url": "https://www.suse.com/security/cve/CVE-2015-4883/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4893 page", "url": "https://www.suse.com/security/cve/CVE-2015-4893/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4903 page", "url": "https://www.suse.com/security/cve/CVE-2015-4903/" }, { "category": "self", "summary": "SUSE CVE CVE-2015-4911 page", "url": "https://www.suse.com/security/cve/CVE-2015-4911/" } ], "title": "Security update for java-1_7_0-openjdk", "tracking": { "current_release_date": "2015-10-23T15:08:11Z", "generator": { "date": "2015-10-23T15:08:11Z", "engine": { "name": "cve-database.git:bin/generate-csaf.pl", "version": "1" } }, "id": "SUSE-SU-2015:1874-2", "initial_release_date": "2015-10-23T15:08:11Z", "revision_history": [ { "date": "2015-10-23T15:08:11Z", "number": "1", "summary": "Current version" } ], "status": "final", "version": "1" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "product": { "name": "java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "product_id": "java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le" } }, { "category": "product_version", "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "product": { "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "product_id": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le" } }, { "category": "product_version", "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "product": { "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "product_id": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le" } }, { "category": "product_version", "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "product": { "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "product_id": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le" } } ], "category": "architecture", "name": "ppc64le" }, { "branches": [ { "category": "product_version", "name": "java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "product": { "name": "java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "product_id": "java-1_7_0-openjdk-1.7.0.91-21.2.s390x" } }, { "category": "product_version", "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "product": { "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "product_id": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x" } }, { "category": "product_version", "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "product": { "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "product_id": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x" } }, { "category": "product_version", "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "product": { "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "product_id": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x" } } ], "category": "architecture", "name": "s390x" }, { "branches": [ { "category": "product_version", "name": "java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "product": { "name": "java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "product_id": "java-1_7_0-openjdk-1.7.0.91-21.2.x86_64" } }, { "category": "product_version", "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "product": { "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "product_id": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" } }, { "category": "product_version", "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "product": { "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "product_id": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64" } }, { "category": "product_version", "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "product": { "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "product_id": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64" } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_name", "name": "SUSE Linux Enterprise Desktop 12", "product": { "name": "SUSE Linux Enterprise Desktop 12", "product_id": "SUSE Linux Enterprise Desktop 12", "product_identification_helper": { "cpe": "cpe:/o:suse:sled:12" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server 12", "product": { "name": "SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12", "product_identification_helper": { "cpe": "cpe:/o:suse:sles:12" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server for SAP Applications 12", "product": { "name": "SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12", "product_identification_helper": { "cpe": "cpe:/o:suse:sles_sap:12" } } } ], "category": "product_family", "name": "SUSE Linux Enterprise" } ], "category": "vendor", "name": "SUSE" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-1.7.0.91-21.2.x86_64 as component of SUSE Linux Enterprise Desktop 12", "product_id": "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64" }, "product_reference": "java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Desktop 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64 as component of SUSE Linux Enterprise Desktop 12", "product_id": "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" }, "product_reference": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Desktop 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le" }, "product_reference": "java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-1.7.0.91-21.2.s390x as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x" }, "product_reference": "java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-1.7.0.91-21.2.x86_64 as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64" }, "product_reference": "java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le" }, "product_reference": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x" }, "product_reference": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64 as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64" }, "product_reference": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le" }, "product_reference": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x" }, "product_reference": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64 as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64" }, "product_reference": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le" }, "product_reference": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x" }, "product_reference": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64 as component of SUSE Linux Enterprise Server 12", "product_id": "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" }, "product_reference": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le" }, "product_reference": "java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-1.7.0.91-21.2.s390x as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x" }, "product_reference": "java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-1.7.0.91-21.2.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64" }, "product_reference": "java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le" }, "product_reference": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x" }, "product_reference": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64" }, "product_reference": "java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le" }, "product_reference": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x" }, "product_reference": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64" }, "product_reference": "java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le" }, "product_reference": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x" }, "product_reference": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" }, { "category": "default_component_of", "full_product_name": { "name": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 12", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" }, "product_reference": "java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12" } ] }, "vulnerabilities": [ { "cve": "CVE-2015-4734", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4734" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85 and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality via vectors related to JGSS.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4734", "url": "https://www.suse.com/security/cve/CVE-2015-4734" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4734", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4734", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4734" }, { "cve": "CVE-2015-4803", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4803" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4893 and CVE-2015-4911.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4803", "url": "https://www.suse.com/security/cve/CVE-2015-4803" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4803", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4803", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4803" }, { "cve": "CVE-2015-4805", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4805" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Serialization.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4805", "url": "https://www.suse.com/security/cve/CVE-2015-4805" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4805", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4805", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4805" }, { "cve": "CVE-2015-4806", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4806" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4806", "url": "https://www.suse.com/security/cve/CVE-2015-4806" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4806", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4806", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4806" }, { "cve": "CVE-2015-4835", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4835" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA, a different vulnerability than CVE-2015-4881.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4835", "url": "https://www.suse.com/security/cve/CVE-2015-4835" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4835", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4835", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4835" }, { "cve": "CVE-2015-4840", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4840" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 7u85 and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality via unknown vectors related to 2D.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4840", "url": "https://www.suse.com/security/cve/CVE-2015-4840" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4840", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4840", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4840" }, { "cve": "CVE-2015-4842", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4842" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality via vectors related to JAXP.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4842", "url": "https://www.suse.com/security/cve/CVE-2015-4842" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4842", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4842", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4842" }, { "cve": "CVE-2015-4843", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4843" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4843", "url": "https://www.suse.com/security/cve/CVE-2015-4843" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4843", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4843", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4843" }, { "cve": "CVE-2015-4844", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4844" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4844", "url": "https://www.suse.com/security/cve/CVE-2015-4844" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4844", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4844", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4844" }, { "cve": "CVE-2015-4860", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4860" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI, a different vulnerability than CVE-2015-4883.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4860", "url": "https://www.suse.com/security/cve/CVE-2015-4860" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4860", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4860", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4860" }, { "cve": "CVE-2015-4872", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4872" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect integrity via unknown vectors related to Security.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4872", "url": "https://www.suse.com/security/cve/CVE-2015-4872" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4872", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4872", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4872" }, { "cve": "CVE-2015-4881", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4881" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA, a different vulnerability than CVE-2015-4835.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4881", "url": "https://www.suse.com/security/cve/CVE-2015-4881" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4881", "url": "https://bugzilla.suse.com/951376" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "critical" } ], "title": "CVE-2015-4881" }, { "cve": "CVE-2015-4882", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4882" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect availability via vectors related to CORBA.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4882", "url": "https://www.suse.com/security/cve/CVE-2015-4882" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4882", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4882", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4882" }, { "cve": "CVE-2015-4883", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4883" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI, a different vulnerability than CVE-2015-4860.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4883", "url": "https://www.suse.com/security/cve/CVE-2015-4883" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4883", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4883", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4883" }, { "cve": "CVE-2015-4893", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4893" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4911.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4893", "url": "https://www.suse.com/security/cve/CVE-2015-4893" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4893", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4893", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4893" }, { "cve": "CVE-2015-4903", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4903" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality via vectors related to RMI.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4903", "url": "https://www.suse.com/security/cve/CVE-2015-4903" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4903", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4903", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4903" }, { "cve": "CVE-2015-4911", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2015-4911" } ], "notes": [ { "category": "general", "text": "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4893.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2015-4911", "url": "https://www.suse.com/security/cve/CVE-2015-4911" }, { "category": "external", "summary": "SUSE Bug 951376 for CVE-2015-4911", "url": "https://bugzilla.suse.com/951376" }, { "category": "external", "summary": "SUSE Bug 955131 for CVE-2015-4911", "url": "https://bugzilla.suse.com/955131" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Desktop 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-demo-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-devel-1.7.0.91-21.2.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.s390x", "SUSE Linux Enterprise Server for SAP Applications 12:java-1_7_0-openjdk-headless-1.7.0.91-21.2.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2015-10-23T15:08:11Z", "details": "low" } ], "title": "CVE-2015-4911" } ] }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…