Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2007:0166 - Security Advisory
Issued:
2007-04-25
Updated:
2007-04-25

RHSA-2007:0166 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Critical: java-1.4.2-ibm security update

Type/Severity

Security Advisory: Critical

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

Updated java-1.4.2-ibm packages to correct a security issue are now
available for Red Hat Enterprise Linux 3 and 4 Extras.

This update has been rated as having critical security impact by the Red
Hat Security Response Team.

Description

IBM's 1.4.2 SR8 Java release includes the IBM Java 2 Runtime Environment
and the IBM Java 2 Software Development Kit.

A flaw in GIF image handling was found in the SUN Java Runtime Environment
that has now been reported as also affecting IBM Java 2. An untrusted
applet or application could use this flaw to elevate its privileges and
potentially execute arbitrary code. (CVE-2007-0243)

All users of java-1.4.2-ibm should upgrade to these updated packages, which
contain IBM's 1.4.2 SR8 Java release which resolves this issue.

Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

To update all RPMs for your particular architecture, run:

rpm -Fvh [filenames]

where [filenames] is a list of the RPMs you wish to upgrade. Only those
RPMs which are currently installed will be updated. Those RPMs which are
not installed but included in the list will not be updated. Note that you
can also use wildcards (*.rpm) if your current directory *only* contains the
desired RPMs.

Please note that this update is also available via Red Hat Network. Many
people find this an easier way to apply updates. To use Red Hat Network,
launch the Red Hat Update Agent with the following command:

up2date

This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system.

Affected Products

  • Red Hat Enterprise Linux Server 5 x86_64
  • Red Hat Enterprise Linux Server 5 ia64
  • Red Hat Enterprise Linux Server 5 i386
  • Red Hat Enterprise Linux Server 4 x86_64
  • Red Hat Enterprise Linux Server 4 ia64
  • Red Hat Enterprise Linux Server 4 i386
  • Red Hat Enterprise Linux Server 3 x86_64
  • Red Hat Enterprise Linux Server 3 ia64
  • Red Hat Enterprise Linux Server 3 i386
  • Red Hat Enterprise Linux Workstation 4 x86_64
  • Red Hat Enterprise Linux Workstation 4 ia64
  • Red Hat Enterprise Linux Workstation 4 i386
  • Red Hat Enterprise Linux Workstation 3 x86_64
  • Red Hat Enterprise Linux Workstation 3 ia64
  • Red Hat Enterprise Linux Workstation 3 i386
  • Red Hat Enterprise Linux Desktop 4 x86_64
  • Red Hat Enterprise Linux Desktop 4 i386
  • Red Hat Enterprise Linux Desktop 3 x86_64
  • Red Hat Enterprise Linux Desktop 3 i386
  • Red Hat Enterprise Linux for IBM z Systems 5 s390x
  • Red Hat Enterprise Linux for IBM z Systems 4 s390x
  • Red Hat Enterprise Linux for IBM z Systems 4 s390
  • Red Hat Enterprise Linux for IBM z Systems 3 s390x
  • Red Hat Enterprise Linux for IBM z Systems 3 s390
  • Red Hat Enterprise Linux for Power, big endian 5 ppc
  • Red Hat Enterprise Linux for Power, big endian 4 ppc
  • Red Hat Enterprise Linux for Power, big endian 3 ppc
  • Red Hat Enterprise Linux Server from RHUI 5 x86_64
  • Red Hat Enterprise Linux Server from RHUI 5 i386

Fixes

  • BZ - 236892 - CVE-2007-0243 GIF buffer overflow
  • BZ - 237283 - CVE-2007-0243 GIF buffer overflow
  • BZ - 237284 - CVE-2007-0243 GIF buffer overflow

CVEs

  • CVE-2007-0243

References

  • http://www-128.ibm.com/developerworks/java/jdk/alerts/
  • http://www.redhat.com/security/updates/classification/#critical
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server 5

SRPM
x86_64
java-1.4.2-ibm-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 579421d0300aef59645e0fdaf40c8c914112182199e5c62f3a0a565e0306744f
java-1.4.2-ibm-1.4.2.8-1jpp.1.el5.x86_64.rpm SHA-256: 6f3b7b483ad08fe8f08fb08261ec867ad2e1a7f19210f0970e13a418606f7c6b
java-1.4.2-ibm-demo-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 23cdab1134e7d867a8e4d59def019d6639c920fd3bdb9b90dd2b74319431a318
java-1.4.2-ibm-demo-1.4.2.8-1jpp.1.el5.x86_64.rpm SHA-256: 9d0dd0830b72e26d01b410ed9a1c7c870018998f6d5841511c3f3ba3f04f6288
java-1.4.2-ibm-devel-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: e7761d169be5085c8104d4054abba867ea74231feccf9ff0d2f2ead4e7dedb2c
java-1.4.2-ibm-devel-1.4.2.8-1jpp.1.el5.x86_64.rpm SHA-256: 07a18112e831624465e528cd4c7b8b5e25d2042af242348ca51f3ee32febf70e
java-1.4.2-ibm-javacomm-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 2696edae122c4f8239e99fa65380d3eb470623b3bd0b8b3434eb85eacd0fc0dc
java-1.4.2-ibm-javacomm-1.4.2.8-1jpp.1.el5.x86_64.rpm SHA-256: b75362a18298a2ee7c865228a6e2bdfbdea7ad62667c758b4573a71521bdd06b
java-1.4.2-ibm-jdbc-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 9029c9eeddaf6f1d45c28f164fc2f78b60288a10d97d8703e856290b33e750a6
java-1.4.2-ibm-plugin-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: eccab3f160d3cb4805b4c6bdbcb6d3df1aa4051e3c78fb652170674d14c8628a
java-1.4.2-ibm-src-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 01e45210938f292c4364b40eea1a7998d89dab4d5e3e3e3cf8cc4873bc3221cc
java-1.4.2-ibm-src-1.4.2.8-1jpp.1.el5.x86_64.rpm SHA-256: e1d2f515c5e75bd40766d80134f1d90e68bda96e6887961960af97ac59dd9efe
ia64
java-1.4.2-ibm-1.4.2.8-1jpp.1.el5.ia64.rpm SHA-256: 39a63fcb0f031796aa32471c814e19de31e74904ee49b818bdc5e23395138c86
java-1.4.2-ibm-demo-1.4.2.8-1jpp.1.el5.ia64.rpm SHA-256: edefaacb5f663f89a1c15bcf3a1a6ae303ae42e5d2d5eae51c1f776093823702
java-1.4.2-ibm-devel-1.4.2.8-1jpp.1.el5.ia64.rpm SHA-256: a12affaf9e1f760f3e8d66fe15566ece8c24df1e4d0bc359cfd2075c4589be11
java-1.4.2-ibm-src-1.4.2.8-1jpp.1.el5.ia64.rpm SHA-256: d29be8d7f4bde4dee1a5ea738e226756a274340f837670b7f67e072b243a3b3e
i386
java-1.4.2-ibm-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 579421d0300aef59645e0fdaf40c8c914112182199e5c62f3a0a565e0306744f
java-1.4.2-ibm-demo-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 23cdab1134e7d867a8e4d59def019d6639c920fd3bdb9b90dd2b74319431a318
java-1.4.2-ibm-devel-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: e7761d169be5085c8104d4054abba867ea74231feccf9ff0d2f2ead4e7dedb2c
java-1.4.2-ibm-javacomm-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 2696edae122c4f8239e99fa65380d3eb470623b3bd0b8b3434eb85eacd0fc0dc
java-1.4.2-ibm-jdbc-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 9029c9eeddaf6f1d45c28f164fc2f78b60288a10d97d8703e856290b33e750a6
java-1.4.2-ibm-plugin-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: eccab3f160d3cb4805b4c6bdbcb6d3df1aa4051e3c78fb652170674d14c8628a
java-1.4.2-ibm-src-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 01e45210938f292c4364b40eea1a7998d89dab4d5e3e3e3cf8cc4873bc3221cc

Red Hat Enterprise Linux Server 4

SRPM
x86_64
ia64
i386

Red Hat Enterprise Linux Server 3

SRPM
x86_64
ia64
i386

Red Hat Enterprise Linux Workstation 4

SRPM
x86_64
ia64
i386

Red Hat Enterprise Linux Workstation 3

SRPM
x86_64
ia64
i386

Red Hat Enterprise Linux Desktop 4

SRPM
x86_64
i386

Red Hat Enterprise Linux Desktop 3

SRPM
x86_64
i386

Red Hat Enterprise Linux for IBM z Systems 5

SRPM
s390x
java-1.4.2-ibm-1.4.2.8-1jpp.1.el5.s390.rpm SHA-256: 09b2373648fd8c6346451ede90cd37c6a0a22c0a42d1089eafcab50bafcab5f7
java-1.4.2-ibm-1.4.2.8-1jpp.1.el5.s390x.rpm SHA-256: 3a14e83e63bb9ee57971351f834ac52e3cbc6e923a78528a0233bbe40ef7a5b5
java-1.4.2-ibm-demo-1.4.2.8-1jpp.1.el5.s390.rpm SHA-256: d82c2e88b2acc58522aa9c977831a478bf2819fe6ee61f7e1f899b304f4a995d
java-1.4.2-ibm-demo-1.4.2.8-1jpp.1.el5.s390x.rpm SHA-256: f9083f115789d91cbf201336cca91e5b6ae5b090f427ffecf91943cd59f66e76
java-1.4.2-ibm-devel-1.4.2.8-1jpp.1.el5.s390.rpm SHA-256: 6c84b0e6ed278962f3388368aa4995a1932d8d12890bcf503238abf63e522278
java-1.4.2-ibm-devel-1.4.2.8-1jpp.1.el5.s390x.rpm SHA-256: 48f9c170f53596b259194e1f02a7e0a1b10b41718b34264dde54f827e80794bf
java-1.4.2-ibm-jdbc-1.4.2.8-1jpp.1.el5.s390.rpm SHA-256: b500004e8e55b58f1314ff77edbdd6f116e8d3c5ae9d8795fbb9ca225df4dc6b
java-1.4.2-ibm-src-1.4.2.8-1jpp.1.el5.s390.rpm SHA-256: d0a2b46d760a51415c61743de0ce0017d6c5ebf7c9264f9a6a607f0e82da50b6
java-1.4.2-ibm-src-1.4.2.8-1jpp.1.el5.s390x.rpm SHA-256: 97cafabf3e1aca4dfb698dc865260c8db5d888dc4397d14149ad8e25d6492cc3

Red Hat Enterprise Linux for IBM z Systems 4

SRPM
s390x
s390

Red Hat Enterprise Linux for IBM z Systems 3

SRPM
s390x
s390

Red Hat Enterprise Linux for Power, big endian 5

SRPM
ppc
java-1.4.2-ibm-1.4.2.8-1jpp.1.el5.ppc.rpm SHA-256: 920598dbd33cfc3ff8878626b0eb5f2cf1d09e2e40ee6d8be50dc0c21aed8025
java-1.4.2-ibm-demo-1.4.2.8-1jpp.1.el5.ppc.rpm SHA-256: 1650c97c6ce782436ca7e36e07a23e8209782bb831bfb0a39733fa292f14070b
java-1.4.2-ibm-devel-1.4.2.8-1jpp.1.el5.ppc.rpm SHA-256: 80da4aa28462cbfc7035b4686439dd91d9ef68a748f08f253cf428459ca7d5b2
java-1.4.2-ibm-javacomm-1.4.2.8-1jpp.1.el5.ppc.rpm SHA-256: 99fc69a4459f4422159362c4c1e9e61182644a04a201206b96c25d447e665d29
java-1.4.2-ibm-jdbc-1.4.2.8-1jpp.1.el5.ppc.rpm SHA-256: 4a13441a03a61756642c594c205d431e4571b8af363b7de5745761d27a4d85ba
java-1.4.2-ibm-src-1.4.2.8-1jpp.1.el5.ppc.rpm SHA-256: 661543ddd8de2e50205132421f86604de174be5431616f4274909c18c0676d44

Red Hat Enterprise Linux for Power, big endian 4

SRPM
ppc

Red Hat Enterprise Linux for Power, big endian 3

SRPM
ppc

Red Hat Enterprise Linux Server from RHUI 5

SRPM
x86_64
java-1.4.2-ibm-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 579421d0300aef59645e0fdaf40c8c914112182199e5c62f3a0a565e0306744f
java-1.4.2-ibm-1.4.2.8-1jpp.1.el5.x86_64.rpm SHA-256: 6f3b7b483ad08fe8f08fb08261ec867ad2e1a7f19210f0970e13a418606f7c6b
java-1.4.2-ibm-demo-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 23cdab1134e7d867a8e4d59def019d6639c920fd3bdb9b90dd2b74319431a318
java-1.4.2-ibm-demo-1.4.2.8-1jpp.1.el5.x86_64.rpm SHA-256: 9d0dd0830b72e26d01b410ed9a1c7c870018998f6d5841511c3f3ba3f04f6288
java-1.4.2-ibm-devel-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: e7761d169be5085c8104d4054abba867ea74231feccf9ff0d2f2ead4e7dedb2c
java-1.4.2-ibm-devel-1.4.2.8-1jpp.1.el5.x86_64.rpm SHA-256: 07a18112e831624465e528cd4c7b8b5e25d2042af242348ca51f3ee32febf70e
java-1.4.2-ibm-javacomm-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 2696edae122c4f8239e99fa65380d3eb470623b3bd0b8b3434eb85eacd0fc0dc
java-1.4.2-ibm-javacomm-1.4.2.8-1jpp.1.el5.x86_64.rpm SHA-256: b75362a18298a2ee7c865228a6e2bdfbdea7ad62667c758b4573a71521bdd06b
java-1.4.2-ibm-jdbc-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 9029c9eeddaf6f1d45c28f164fc2f78b60288a10d97d8703e856290b33e750a6
java-1.4.2-ibm-plugin-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: eccab3f160d3cb4805b4c6bdbcb6d3df1aa4051e3c78fb652170674d14c8628a
java-1.4.2-ibm-src-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 01e45210938f292c4364b40eea1a7998d89dab4d5e3e3e3cf8cc4873bc3221cc
java-1.4.2-ibm-src-1.4.2.8-1jpp.1.el5.x86_64.rpm SHA-256: e1d2f515c5e75bd40766d80134f1d90e68bda96e6887961960af97ac59dd9efe
i386
java-1.4.2-ibm-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 579421d0300aef59645e0fdaf40c8c914112182199e5c62f3a0a565e0306744f
java-1.4.2-ibm-demo-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 23cdab1134e7d867a8e4d59def019d6639c920fd3bdb9b90dd2b74319431a318
java-1.4.2-ibm-devel-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: e7761d169be5085c8104d4054abba867ea74231feccf9ff0d2f2ead4e7dedb2c
java-1.4.2-ibm-javacomm-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 2696edae122c4f8239e99fa65380d3eb470623b3bd0b8b3434eb85eacd0fc0dc
java-1.4.2-ibm-jdbc-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 9029c9eeddaf6f1d45c28f164fc2f78b60288a10d97d8703e856290b33e750a6
java-1.4.2-ibm-plugin-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: eccab3f160d3cb4805b4c6bdbcb6d3df1aa4051e3c78fb652170674d14c8628a
java-1.4.2-ibm-src-1.4.2.8-1jpp.1.el5.i386.rpm SHA-256: 01e45210938f292c4364b40eea1a7998d89dab4d5e3e3e3cf8cc4873bc3221cc

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility