{"schema_version":"1.7.3","id":"SUSE-SU-2021:14634-1","published":"2021-02-19T09:35:35Z","modified":"2026-02-04T03:22:45.626983Z","related":["CVE-2020-14803","CVE-2020-27221"],"upstream":["CVE-2020-14803","CVE-2020-27221"],"summary":"Security update for java-1_7_1-ibm","details":"This update for java-1_7_1-ibm fixes the following issues:\n\n- Update to Java 7.1 Service Refresh 4 Fix Pack 80\n  [bsc#1182186, bsc#1181239, CVE-2020-27221, CVE-2020-14803]\n  * CVE-2020-27221: Potential for a stack-based buffer overflow\n    when the virtual machine or JNI natives are converting from\n    UTF-8 characters to platform encoding.\n  * CVE-2020-14803: Unauthenticated attacker with network access\n    via multiple protocols allows to compromise Java SE.\n","affected":[{"package":{"name":"java-1_7_1-ibm","ecosystem":"SUSE:Linux Enterprise Server 11 SP4-LTSS","purl":"pkg:rpm/suse/java-1_7_1-ibm&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4-LTSS"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.7.1_sr4.80-26.65.1"}]}],"ecosystem_specific":{"binaries":[{"java-1_7_1-ibm":"1.7.1_sr4.80-26.65.1","java-1_7_1-ibm-alsa":"1.7.1_sr4.80-26.65.1","java-1_7_1-ibm-devel":"1.7.1_sr4.80-26.65.1","java-1_7_1-ibm-jdbc":"1.7.1_sr4.80-26.65.1","java-1_7_1-ibm-plugin":"1.7.1_sr4.80-26.65.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2021:14634-1.json"}}],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2021/suse-su-202114634-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1181239"},{"type":"REPORT","url":"https://bugzilla.suse.com/1182186"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14803"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-27221"}]}