LWN.net Logo

Scientific Linux alert SL-iced-20121107 (icedtea-web)

From:  Pat Riehecky <riehecky@fnal.gov>
To:  "SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV" <SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV>
Subject:  Security ERRATA Critical: icedtea-web on SL6.x i386/x86_64
Date:  Wed, 7 Nov 2012 14:46:11 -0600
Message-ID:  <509AC893.30802@fnal.gov>
Archive-link:  Article, Thread

Synopsis: Critical: icedtea-web security update Issue Date: 2012-11-07 CVE Numbers: CVE-2012-4540 -- A buffer overflow flaw was found in the IcedTea-Web plug-in. Visiting a malicious web page could cause a web browser using the IcedTea-Web plug-in to crash or, possibly, execute arbitrary code. (CVE-2012-4540) This erratum also upgrades IcedTea-Web to version 1.2.2. Web browsers using the IcedTea-Web browser plug-in must be restarted for this update to take effect. -- SL6 x86_64 icedtea-web-1.2.2-1.el6_3.x86_64.rpm icedtea-web-javadoc-1.2.2-1.el6_3.x86_64.rpm i386 icedtea-web-1.2.2-1.el6_3.i686.rpm icedtea-web-javadoc-1.2.2-1.el6_3.i686.rpm - Scientific Linux Development Team


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds