-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Reference: CERT-EU Security Advisory 2012-0073 Title: Oracle Java SE Critical Patch Update Advisory - June 2012 [1] Version history: 13.06.2012 Initial publication Summary ======= A Critical Patch Update is a collection of patches for multiple security vulnerabilities. The Critical Patch Update for Java SE also includes non-security fixes. Critical Patch Updates are cumulative and each advisory describes only the security fixes added since the previous Critical Patch Update. Thus, prior Critical Patch Update Advisories should be reviewed for information regarding earlier accumulated security fixes. CVSS Base Score (of the most critical ones) CVSS v2 Base Score: 10.0 (CRITICAL) (AV:N/AC:L/Au:N/C:C/I:C/A:C) [2] Affected Products and Versions ============================== JDK and JRE 7 Update 4 and earlier JDK and JRE 6 Update 32 and earlier JDK and JRE 5.0 Update 35 and earlier SDK and JRE 1.4.2_37 and earlier JavaFX 2.1 and earlier What can you do? ================ Deploy the updated versions of the software [1]. Java SE fixes in this Update are cumulative; the latest Critical Patch Update includes all fixes from the previous Critical Patch Updates. What to tell your users? ======================== N/A More information ================ [1] http://www.oracle.com/technetwork/topics/security/javacpujun2012-1515912.html [2] Information about CVSS: http://www.first.org/cvss/cvss-guide.html Best regards, CERT-EU Pre-configuration Team (http://cert.europa.eu) Phone: +32.2.2990005 / e-mail: cert-eu@ec.europa.eu PGP KeyID 0x46AC4383 FP: 9011 6BE9 D642 DD93 8348 DAFA 27A4 06CA 46AC 4383 Privacy Statement: http://cert.europa.eu/cert/plainedition/en/cert_privacy.html -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iQIcBAEBAgAGBQJP2KCvAAoJEPpzpNLI8SVo1rQP/14yngX6f07XdxnCrXwwSA4Q e0WUPx71ab2XncDlpXXedC8BPWZ/TPv6ot+vdvlkQX2LlVKVOKKniVEJGEocSrM0 0l9qyL1VgXQGwexsLyzzNi8//mi/UwJPibyAo3rVlGc1gmjroGDLaIeGX0lea+Qp vW1BF8x3iN4JrOc8kQt88weAveEZrhXeLbNgpHGABErpL/xXy4a1w97OLrMXRY0Q Xa701TlIQhN0vo37qeEkAJhishK2uFj+494iHAZnGXyUPgtruYEbJIL2/1cyIOVT kUBxR4vS+dCDJQX/wy5l1GHo11gbgAWBQgct23KZmoBm8ivNTYDfH/uqBhFGPJFD bthUOKqw1TtUS9oIwP8MntXJ8kPddXDPWoY06pr56Dxxc6cqKbt2VbN27WN7/h0c EWXJTMMy9SfGOds8hWEc0ozvGUHIcaif5OmrPEU6yNypUoQZatmwDB02+gnk5Ewh V/6NeLeOp2rY3sQQd0zoeFdHUklbtwqVozeyuT9v9wOwRrRXvmzUa8EfIqYDKAAA swwp6iZJ7d65cUZeTvvXbbMfZmSDK3SI0zTU2JgcunzyGJ1yysiOmirwGJp0RfVD +5z1dpGWIGuxieLoHWZULXECr+blvwOj0Q53AhSd3dCyxYfqbVJ/UbWzAyQLoq8P /j/p/m9AekKi1Ry8EKCY =L12i -----END PGP SIGNATURE-----