File _patchinfo of Package patchinfo.684
<patchinfo incident="684">
<packager>AndreasStieger</packager>
<issue tracker="cve" id="2015-0138"></issue>
<issue tracker="cve" id="2015-0192"></issue>
<issue tracker="cve" id="2015-1914"></issue>
<issue tracker="cve" id="2015-2808"></issue>
<issue tracker="bnc" id="912434">zypper in java-1_7_0-openjdk has problems with update-alternatives : ibm-java needs fixed update-alternatives</issue>
<issue tracker="bnc" id="912447">The keystore of IBM java should point to our generated keystore</issue>
<issue tracker="bnc" id="930365">L3: VUL-0: Java SE Version 7: Multiple CVEs fixed in new IBM java release SR9</issue>
<issue tracker="bnc" id="931693">IBM Java 1_8_0 requires libcuda which is not provided</issue>
<issue tracker="bnc" id="931702">java-1_*_0-ibm package break JCE symbolic links on update</issue>
<issue tracker="fate" id="317600"></issue>
<category>security</category>
<rating>important</rating>
<summary>
Security update for java-1_7_0-ibm </summary>
<description>This update fixes the following security issues:
- Version bump to 7.1-3.0 release bnc#930365 CVE-2015-0192 CVE-2015-2808 CVE-2015-1914 CVE-2015-0138
- Fix removeing links before update-alternatives run. bnc#931702
- Fix bnc#912434, javaws/plugin stuff should slave plugin update-alternatives
- Fix bnc#912447, use system cacerts
- Update to 7.1.2.10 for sec issues bnc#916266 and bnc#916265 CVE-2014-8892 CVE-2014-8891
</description>
</patchinfo>