oracle-jre 보안 업데이트
업데이트 : 2017.10.21
이름 : oracle-jre-0:1.8.0-151.an2
벤더 : AnNyung Packaging Team
설명 :
The Java Platform Standard Edition Runtime Environment (JRE) contains
everything necessary to run applets and applications designed for the
Java platform. This includes the Java virtual machine, plus the Java
platform classes and supporting files.
The JRE is freely redistributable, per the terms of the included license.
변경사항
- update 1.8.0u151
. http://www.oracle.com/technetwork/java/javase/8u151-relnotes-3850493.html
- security issues
. http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html
. CVE-2017-10346 Hotspot component. Enabled remote attack without auth
. CVE-2017-10285 RMI component. Enabled remote attack without auth
. CVE-2017-10388 Libraries component(Kerberos). Enabled remote attack without auth
. CVE-2017-10309 Deployment component. Enabled remote attack without auth
. CVE-2017-10274 Smart Card IO component. Enabled remote attack without auth
. CVE-2017-10356 Security component. No
. CVE-2017-10293 Javadoc component(HTTP). Enabled remote attack without auth
. CVE-2017-10350 JAX-WS component. Enabled remote attack without auth
. CVE-2017-10349 JAXP component. Enabled remote attack without auth
. CVE-2017-10348 Libraries component. Enabled remote attack without auth
. CVE-2017-10357 Serialization component. Enabled remote attack without auth
. CVE-2016-9841 Util (zlib) component. Enabled remote attack without auth
. CVE-2016-10165 2D (Little CMS 2) component. Enabled remote attack without auth
. CVE-2017-10355 Networking component. Enabled remote attack without auth
. CVE-2017-10281 Serialization component. Enabled remote attack without auth
. CVE-2017-10347 Serialization component. Enabled remote attack without auth
. CVE-2017-10295 Networking component(HTTP). Enabled remote attack without auth
. CVE-2017-10345 Serialization component. Enabled remote attack without auth
주의사항
JRE 1.8.0-211 부터는 개인 적인 용도나 개발 용도가 아닐 경우에는
Oracle JDK Subscription 이 필요 합니다.
사용함에 주의를 기하십시오!
업데이트 패키지
SRPMS:
. oracle-jre-1.8.0-151.an2.src.rpm
x86_64:
. oracle-jre-1.8.0-151.an2.x86_64.rpm
i686:
. oracle-jre-1.8.0-151.an2.i686.rpm
|