Login
Newsletter
Werbung

Sicherheit: Preisgabe von Informationen in OpenJDK
Aktuelle Meldungen Distributionen
Name: Preisgabe von Informationen in OpenJDK
ID: USN-3942-1
Distribution: Ubuntu
Plattformen: Ubuntu 14.04 LTS
Datum: Di, 9. April 2019, 07:25
Referenzen: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-2422
Applikationen: OpenJDK

Originalnachricht


--===============8751332535149812167==
Content-Type: multipart/signed; micalg=pgp-sha512;
protocol="application/pgp-signature";
boundary="FUFe+yI/t+r3nyH4"
Content-Disposition: inline


--FUFe+yI/t+r3nyH4
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

==========================================================================
Ubuntu Security Notice USN-3942-1
April 09, 2019

openjdk-7 vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 14.04 LTS

Summary:

Java applets or applications could be made to expose sensitive
information.

Software Description:
- openjdk-7: Open Source Java implementation

Details:

It was discovered that a memory disclosure issue existed in the OpenJDK
Library subsystem. An attacker could use this to expose sensitive
information and possibly bypass Java sandbox restrictions.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 14.04 LTS:
icedtea-7-jre-jamvm 7u211-2.6.17-0ubuntu0.1
openjdk-7-jdk 7u211-2.6.17-0ubuntu0.1
openjdk-7-jre 7u211-2.6.17-0ubuntu0.1

This update uses a new upstream release, which includes additional bug
fixes. After a standard system update you need to restart any Java
applications or applets to make all the necessary changes.

References:
https://usn.ubuntu.com/usn/usn-3942-1
CVE-2019-2422

Package Information:
https://launchpad.net/ubuntu/+source/openjdk-7/7u211-2.6.17-0ubuntu0.1


--FUFe+yI/t+r3nyH4
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=3SeY
-----END PGP SIGNATURE-----

--FUFe+yI/t+r3nyH4--


--===============8751332535149812167==
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
Content-Transfer-Encoding: base64
Content-Disposition: inline

--
ubuntu-security-announce mailing list
ubuntu-security-announce@lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung