net3design Posted January 24, 2014 Report Posted January 24, 2014 Ubuntu Security Notice USN-2089-1A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 13.10 Ubuntu 13.04 Ubuntu 12.10SummarySeveral security issues were fixed in OpenJDK 7.Software description openjdk-7 - Open Source Java implementationDetailsSeveral vulnerabilities were discovered in the OpenJDK JRE related toinformation disclosure and data integrity. An attacker could exploit theseto expose sensitive data over the network. (CVE-2013-3829, CVE-2013-5783,CVE-2013-5804, CVE-2014-0411)Several vulnerabilities were discovered in the OpenJDK JRE related toavailability. An attacker could exploit these to cause a denial of service.(CVE-2013-4002, CVE-2013-5803, CVE-2013-5823, CVE-2013-5825, CVE-2013-5896,CVE-2013-5910)Several vulnerabilities were discovered in the OpenJDK JRE related to dataintegrity. (CVE-2013-5772, CVE-2013-5774, CVE-2013-5784, CVE-2013-5797,CVE-2013-5820, CVE-2014-0376, CVE-2014-0416)Several vulnerabilities were discovered in the OpenJDK JRE related toinformation disclosure. An attacker could exploit these to expose sensitivedata over the network. (CVE-2013-5778, CVE-2013-5780, CVE-2013-5790,CVE-2013-5800, CVE-2013-5840, CVE-2013-5849, CVE-2013-5851, CVE-2013-5884,CVE-2014-0368)Several vulnerabilities were discovered in the OpenJDK JRE related toinformation disclosure, data integrity and availability. An attacker couldexploit these to cause a denial of service or expose sensitive data overthe network. (CVE-2013-5782, CVE-2013-5802, CVE-2013-5809, CVE-2013-5829,CVE-2013-5814, CVE-2013-5817, CVE-2013-5830, CVE-2013-5842, CVE-2013-5850,CVE-2013-5878, CVE-2013-5893, CVE-2013-5907, CVE-2014-0373, CVE-2014-0408,CVE-2014-0422, CVE-2014-0428)A vulnerability was discovered in the OpenJDK JRE related to informationdisclosure and availability. An attacker could exploit this to exposesensitive data over the network or cause a denial of service.(CVE-2014-0423)Update instructionsThe problem can be corrected by updating your system to the following package version:Ubuntu 13.10: openjdk-7-jre-lib 7u51-2.4.4-0ubuntu0.13.10.1 openjdk-7-jre-zero 7u51-2.4.4-0ubuntu0.13.10.1 icedtea-7-jre-jamvm 7u51-2.4.4-0ubuntu0.13.10.1 openjdk-7-jre-headless 7u51-2.4.4-0ubuntu0.13.10.1 openjdk-7-jre 7u51-2.4.4-0ubuntu0.13.10.1 Ubuntu 13.04: openjdk-7-jre-lib 7u51-2.4.4-0ubuntu0.13.04.2 openjdk-7-jre-zero 7u51-2.4.4-0ubuntu0.13.04.2 icedtea-7-jre-jamvm 7u51-2.4.4-0ubuntu0.13.04.2 openjdk-7-jre-headless 7u51-2.4.4-0ubuntu0.13.04.2 openjdk-7-jre 7u51-2.4.4-0ubuntu0.13.04.2 Ubuntu 12.10: openjdk-7-jre-zero 7u51-2.4.4-0ubuntu0.12.10.2 icedtea-7-jre-jamvm 7u51-2.4.4-0ubuntu0.12.10.2 icedtea-7-jre-cacao 7u51-2.4.4-0ubuntu0.12.10.2 openjdk-7-jre-lib 7u51-2.4.4-0ubuntu0.12.10.2 openjdk-7-jre-headless 7u51-2.4.4-0ubuntu0.12.10.2 openjdk-7-jre 7u51-2.4.4-0ubuntu0.12.10.2 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.This update uses a new upstream release, which includes additional bugfixes. After a standard system update you need to restart any Javaapplications or applets to make all the necessary changes.ReferencesCVE-2013-3829, CVE-2013-4002, CVE-2013-5772, CVE-2013-5774, CVE-2013-5778, CVE-2013-5780, CVE-2013-5782, CVE-2013-5783, CVE-2013-5784, CVE-2013-5790, CVE-2013-5797, CVE-2013-5800, CVE-2013-5802, CVE-2013-5803, CVE-2013-5804, CVE-2013-5805, CVE-2013-5806, CVE-2013-5809, CVE-2013-5814, CVE-2013-5817, CVE-2013-5820, CVE-2013-5823, CVE-2013-5825, CVE-2013-5829, CVE-2013-5830, CVE-2013-5840, CVE-2013-5842, CVE-2013-5849, CVE-2013-5850, CVE-2013-5851, CVE-2013-5878, CVE-2013-5884, CVE-2013-5893, CVE-2013-5896, CVE-2013-5907, CVE-2013-5910, CVE-2014-0368, CVE-2014-0373, CVE-2014-0376, CVE-2014-0408, CVE-2014-0411, CVE-2014-0416, CVE-2014-0422, CVE-2014-0423, CVE-2014-0428 Source : Ubuntu Blog Quote
seboo00111 Posted January 25, 2014 Report Posted January 25, 2014 acum 1 zi 2 au facut update-uri.. nu cred ca mai e problemaedit: nu am citit tot.. my bad Quote