RHSA-2011:0291-01 -- Redhat java-1.5.0-ibm, javaID: oval:org.secpod.oval:def:505805 | Date: (C)2021-02-05 (M)2022-11-29 |
Class: PATCH | Family: unix |
The IBM 1.5.0 Java release includes the IBM Java 2 Runtime Environment and the IBM Java 2 Software Development Kit. A denial of service flaw was found in the way certain strings were converted to Double objects. A remote attacker could use this flaw to cause Java based applications to hang, for example, if they parsed Double values in a specially-crafted HTTP request. All users of java-1.5.0-ibm are advised to upgrade to these updated packages, containing the IBM 1.5.0 SR12-FP3 Java release. All running instances of IBM Java must be restarted for this update to take effect.
Platform: |
Red Hat Enterprise Linux 6 |