The IBM 1.4.2 SR13-FP8 Java release includes the IBM Java 2 RuntimeEnvironment and the IBM Java 2 Software Development Kit.This update fixes two vulnerabilities in the IBM Java 2 Runtime Environmentand the IBM Java 2 Software Development Kit. Detailed vulnerabilitydescriptions are linked from the IBM "Security alerts" page, listed in theReferences section. (CVE-2010-1321, CVE-2010-3574)Note: The RHSA-2010:0935 java-1.4.2-ibm update did not, unlike the erratumtext stated, provide fixes for the above issues.All users of java-1.4.2-ibm are advised to upgrade to these updatedpackages, which contain the IBM 1.4.2 SR13-FP8 Java release. All runninginstances of IBM Java must be restarted for this update to take effect.
With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.
– Scott Cheney, Manager of Information Security, Sierra View Medical Center