DSA-2722-1 openjdk-7 -- several vulnerabilities

Related Vulnerabilities: CVE-2013-1500   CVE-2013-1571   CVE-2013-2407   CVE-2013-2412   CVE-2013-2443   CVE-2013-2444   CVE-2013-2445   CVE-2013-2446   CVE-2013-2447   CVE-2013-2448   CVE-2013-2449   CVE-2013-2450   CVE-2013-2451   CVE-2013-2452   CVE-2013-2453   CVE-2013-2454   CVE-2013-2455   CVE-2013-2456   CVE-2013-2457   CVE-2013-2458   CVE-2013-2459   CVE-2013-2460   CVE-2013-2461   CVE-2013-2463   CVE-2013-2465   CVE-2013-2469   CVE-2013-2470   CVE-2013-2471   CVE-2013-2472   CVE-2013-2473  

Several vulnerabilities have been discovered in OpenJDK, an implementation of the Oracle Java platform, resulting in the execution of arbitrary code, breakouts of the Java sandbox, information disclosure or denial of service. For the stable distribution (wheezy), these problems have been fixed in version 7u25-2.3.10-1~deb7u1. In addition icedtea-web needed to be updated to 1.4-3~deb7u1. For the unstable distribution (sid), these problems have been fixed in version 7u25-2.3.10-1. We recommend that you upgrade your openjdk-7 packages.

Debian Security Advisory

DSA-2722-1 openjdk-7 -- several vulnerabilities

Date Reported:
15 Jul 2013
Affected Packages:
openjdk-7
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2013-1500, CVE-2013-1571, CVE-2013-2407, CVE-2013-2412, CVE-2013-2443, CVE-2013-2444, CVE-2013-2445, CVE-2013-2446, CVE-2013-2447, CVE-2013-2448, CVE-2013-2449, CVE-2013-2450, CVE-2013-2451, CVE-2013-2452, CVE-2013-2453, CVE-2013-2454, CVE-2013-2455, CVE-2013-2456, CVE-2013-2457, CVE-2013-2458, CVE-2013-2459, CVE-2013-2460, CVE-2013-2461, CVE-2013-2463, CVE-2013-2465, CVE-2013-2469, CVE-2013-2470, CVE-2013-2471, CVE-2013-2472, CVE-2013-2473.
More information:

Several vulnerabilities have been discovered in OpenJDK, an implementation of the Oracle Java platform, resulting in the execution of arbitrary code, breakouts of the Java sandbox, information disclosure or denial of service.

For the stable distribution (wheezy), these problems have been fixed in version 7u25-2.3.10-1~deb7u1. In addition icedtea-web needed to be updated to 1.4-3~deb7u1.

For the unstable distribution (sid), these problems have been fixed in version 7u25-2.3.10-1.

We recommend that you upgrade your openjdk-7 packages.