{
  "cves": [
    "CVE-2015-2621",
    "CVE-2015-2628",
    "CVE-2015-4000",
    "CVE-2015-4733",
    "CVE-2015-4749",
    "CVE-2015-4760",
    "CVE-2015-2601",
    "CVE-2015-4732",
    "CVE-2015-2590",
    "CVE-2015-2625",
    "CVE-2015-2808",
    "CVE-2015-4731",
    "CVE-2015-4748",
    "CVE-2015-2632"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "CRITICAL"
  },
  "description": "[1:1.7.0.85-2.6.1.2.0.1.el7_1]\n- Update DISTRO_NAME in specfile\n\n[1:1.7.0.85-2.6.1.2]\n- Bump upstream tarball to u25b01 to fix issue with 8075374 backport.\n- Resolves: rhbz#1235158\n\n[1:1.7.0.85-2.6.1.1]\n- Update OpenJDK tarball so correct version is used.\n- Resolves: rhbz#1235158\n\n[1:1.7.0.85-2.6.1.0]\n- Add additional java.security md5sum from January CPU\n- Resolves: rhbz#1235158\n\n[1:1.7.0.85-2.6.1.0]\n- Bump to 2.6.1 and u85b00.\n- Resolves: rhbz#1235158\n\n[1:1.7.0.80-2.6.0.1]\n- Pass SYSTEM_GSETTINGS='true' to the OpenJDK build to explicitly enable the GSettings API.\n- Resolves: rhbz#1235158\n\n[1:1.7.0.80-2.6.0.0]\n- Add GConf2-devel dependency for native proxy fallback support.\n- Remove libxslt dependency pulled in from IcedTea builds.\n- Reduce redhat-lsb dependency to redhat-lsb-core (lsb_release)\n- Resolves: rhbz#1235158\n\n[1:1.7.0.80-2.6.0.0]\n- Bump to 2.6.0 and u80b32.\n- Drop upstreamed patches and separate AArch64 HotSpot.\n- Add dependencies on pcsc-lite-devel (PR2496) and lksctp-tools-devel (PR2446)\n- Only run -Xshare:dump on JIT archs other than power64 as port lacks support\n- Update remove-intree-libraries script to cover LCMS and PCSC headers and SunEC.\n- Resolves: rhbz#1235158",
  "id": "ELSA-2015-1229",
  "ovalId": "oval:com.oracle.elsa:def:20151229",
  "source": "oracle_linux",
  "title": "ELSA-2015-1229:  java-1.7.0-openjdk security update (CRITICAL)",
  "url": "https://linux.oracle.com/errata/ELSA-2015-1229.html"
}