File _patchinfo of Package patchinfo.686
<patchinfo incident="686">
<issue id="912434" tracker="bnc">zypper in java-1_7_0-openjdk has problems with update-alternatives : ibm-java needs fixed update-alternatives</issue>
<issue id="912447" tracker="bnc">The keystore of IBM java should point to our generated keystore</issue>
<issue id="930365" tracker="bnc">Java SE Version 7: Multiple CVE's fixed in new IBM java release SR9</issue>
<issue id="931702" tracker="bnc">java-1_*_0-ibm package break JCE symbolic links on update</issue>
<issue tracker="cve" id="CVE-2015-0138"/>
<issue tracker="cve" id="CVE-2015-0192"/>
<issue tracker="cve" id="CVE-2015-0204"/>
<issue tracker="cve" id="CVE-2015-0458"/>
<issue tracker="cve" id="CVE-2015-0459"/>
<issue tracker="cve" id="CVE-2015-0469"/>
<issue tracker="cve" id="CVE-2015-0477"/>
<issue tracker="cve" id="CVE-2015-0478"/>
<issue tracker="cve" id="CVE-2015-0480"/>
<issue tracker="cve" id="CVE-2015-0488"/>
<issue tracker="cve" id="CVE-2015-0491"/>
<issue tracker="cve" id="CVE-2015-1914"/>
<issue tracker="cve" id="CVE-2015-2808"/>
<category>security</category>
<rating>important</rating>
<packager>scarabeus_iv</packager>
<description>
IBM Java 1.6.0 was updated to SR16-FP4 fixing security issues and bugs.
Tabulated information can be found on:
[http://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_May_2015](http://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_May_2015)
CVEs addressed:
CVE-2015-0192 CVE-2015-2808 CVE-2015-1914 CVE-2015-0138
CVE-2015-0491 CVE-2015-0458 CVE-2015-0459 CVE-2015-0469
CVE-2015-0480 CVE-2015-0488 CVE-2015-0478 CVE-2015-0477
CVE-2015-0204
Additional bugs fixed:
* Fix javaws/plugin stuff should slave plugin update-alternatives (bnc#912434)
* Changed Java to use the system root CA certificates (bnc#912447)
</description>
<summary>Security update for java-1_6_0-ibm</summary>
</patchinfo>