1. 내용
- 2D, CORBA, JMX, Libraries, RMI 컴포넌트 결함수정
- JCE 컴포넌트 결함수정
- RC4 암호화 알고리즘 결함수정
- TLS 프로토콜의 DH 키 교환방식의 결함수정
- JNDI 프로토콜의 DNS응답 결함수정
- JMX와 2D 컴포넌트의 정보유출 결함수정
- JSSE 컴포넌트 결함수정
2. 업데이트 방법
yum update java-1.7.0-openjdk
3. 관련 패키지
SRPMS:
java-1.7.0-openjdk-1.7.0.85-2.6.1.3.el6_6.src.rpm
IA-32:
java-1.7.0-openjdk-1.7.0.85-2.6.1.3.el6_6.i686.rpm
java-1.7.0-openjdk-demo-1.7.0.85-2.6.1.3.el6_6.i686.rpm
java-1.7.0-openjdk-devel-1.7.0.85-2.6.1.3.el6_6.i686.rpm
java-1.7.0-openjdk-javadoc-1.7.0.85-2.6.1.3.el6_6.noarch.rpm
java-1.7.0-openjdk-src-1.7.0.85-2.6.1.3.el6_6.i686.rpm
x86_64:
java-1.7.0-openjdk-1.7.0.85-2.6.1.3.el6_6.x86_64.rpm
java-1.7.0-openjdk-demo-1.7.0.85-2.6.1.3.el6_6.x86_64.rpm
java-1.7.0-openjdk-devel-1.7.0.85-2.6.1.3.el6_6.x86_64.rpm
java-1.7.0-openjdk-javadoc-1.7.0.85-2.6.1.3.el6_6.noarch.rpm
java-1.7.0-openjdk-src-1.7.0.85-2.6.1.3.el6_6.x86_64.rpm
4. 참고사이트
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2590
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2601
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2621
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2625
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2628
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2632
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2808
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4000
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4731
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4732
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4733
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4748
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4749
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4760