Upstream information
Description
The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12 and earlier, and 5.0 Update 17 and earlier, allows remote attackers to trick a user into trusting a signed applet via unknown vectors that misrepresent the security warning dialog, related to a "Swing JLabel HTML parsing vulnerability," aka CR 6782871.NVD CVSS v2 Base Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
Novell/SUSE information
Novell Bugzilla entries: 488926, 497424, 516361 SUSE Security Advisories:- SUSE-SA:2009:016, published Fri, 03 Apr 2009 12:00:00 +0000
- SUSE-SA:2009:029, published Mon, 25 May 2009 10:00:00 +0000
- SUSE-SA:2009:036, published Thu, 02 Jul 2009 12:00:00 +0000
- SUSE-SR:2009:011, published Tue, 09 Jun 2009 12:00:00 +0000
List of released packages
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| openSUSE 10.3 |
| |
| Novell Linux POS 9 Open Enterprise Server SUSE CORE 9 for AMD64 and Intel EM64T SUSE CORE 9 for IBM POWER SUSE CORE 9 for IBM S/390 31bit SUSE CORE 9 for IBM zSeries 64bit SUSE CORE 9 for x86 |
| core9.x86 core9.ppc core9.x86-64 sles9-oes.x86 core9.s390x core9.s390 sles9-nlpos.x86 YOU Patch Nr: 12422 |
| openSUSE 10.3 |
| |
| SUSE Linux Enterprise Desktop 10 SP2 for x86 |
| sled10-sp2.x86 sles10-sp2.ppc sled10-sp2.x86-64 sles10-sp2.s390x sles10-sp2.x86 sles10-sp2.x86-64 ZYPP Patch Nr: 6253 |
| SUSE Linux Enterprise Desktop 10 SP2 for AMD64 and Intel EM64T |
| sled10-sp2.x86 sles10-sp2.ppc sled10-sp2.x86-64 sles10-sp2.s390x sles10-sp2.x86 sles10-sp2.x86-64 ZYPP Patch Nr: 6253 |
| SUSE Linux Enterprise Server 10 SP2 for x86 |
| sled10-sp2.x86 sles10-sp2.ppc sled10-sp2.x86-64 sles10-sp2.s390x sles10-sp2.x86 sles10-sp2.x86-64 ZYPP Patch Nr: 6253 |
| SUSE Linux Enterprise Server 10 SP2 for IBM POWER |
| sled10-sp2.x86 sles10-sp2.ppc sled10-sp2.x86-64 sles10-sp2.s390x sles10-sp2.x86 sles10-sp2.x86-64 ZYPP Patch Nr: 6253 |
| SUSE Linux Enterprise Server 10 SP2 for IBM zSeries 64bit |
| sled10-sp2.x86 sles10-sp2.ppc sled10-sp2.x86-64 sles10-sp2.s390x sles10-sp2.x86 sles10-sp2.x86-64 ZYPP Patch Nr: 6253 |
| SUSE Linux Enterprise Server 10 SP2 for AMD64 and Intel EM64T |
| sled10-sp2.x86 sles10-sp2.ppc sled10-sp2.x86-64 sles10-sp2.s390x sles10-sp2.x86 sles10-sp2.x86-64 ZYPP Patch Nr: 6253 |
