|
From: Michael S. <mi...@st...> - 2013-10-23 20:32:08
|
Tomas Gustavsson wrote: > It is only Oracle JDK 6 that is eol, open JDK is still supported by RedHat > etc. RedHat have patches for jboss 5 to run with JDK 7, as for EJBCA 4, I > do not know. EJBCA will come with we releases later this year. The RHEL pages for the Java security flaws are: https://access.redhat.com/security/cve/CVE-2013-5830 https://access.redhat.com/security/cve/CVE-2013-5782 Both lists the same errata pages which all mention java-1.7.0-openjdk or java-1.7.0-oracle as security fixes (even for RHEL5). So the big question is whether ejbca 4.0.x runs with e.g java-1.7.0-openjdk. Maybe I'm not familiar enough with JDK version numbering though. Ciao, Michael. |