File _patchinfo of Package patchinfo.684

<patchinfo incident="684">
  <packager>AndreasStieger</packager>
  <issue tracker="cve" id="2015-0138"></issue>
  <issue tracker="cve" id="2015-0192"></issue>
  <issue tracker="cve" id="2015-1914"></issue>
  <issue tracker="cve" id="2015-2808"></issue>
  <issue tracker="bnc" id="912434">zypper in java-1_7_0-openjdk has problems with update-alternatives : ibm-java needs fixed update-alternatives</issue>
  <issue tracker="bnc" id="912447">The keystore of IBM java should point to our generated keystore</issue>
  <issue tracker="bnc" id="930365">L3: VUL-0: Java SE  Version 7: Multiple CVEs fixed in new IBM java release SR9</issue>
  <issue tracker="bnc" id="931693">IBM Java 1_8_0 requires libcuda which is not provided</issue>
  <issue tracker="bnc" id="931702">java-1_*_0-ibm package break JCE symbolic links on update</issue>
  <issue tracker="fate" id="317600"></issue>
  <category>security</category>
  <rating>important</rating>
  <summary>
Security update for java-1_7_0-ibm </summary>
  <description>This update fixes the following security issues:

- Version bump to 7.1-3.0 release bnc#930365 CVE-2015-0192 CVE-2015-2808 CVE-2015-1914 CVE-2015-0138

- Fix removeing links before update-alternatives run. bnc#931702

- Fix bnc#912434, javaws/plugin stuff should slave plugin update-alternatives
- Fix bnc#912447, use system cacerts

- Update to 7.1.2.10 for sec issues bnc#916266 and bnc#916265 CVE-2014-8892 CVE-2014-8891
</description>
</patchinfo>
openSUSE Build Service is sponsored by