UCF STIG Viewer Logo

Java Runtime Environment (JRE) versions that are no longer supported by the vendor for security updates must not be installed on a system.


Overview

Finding ID Version Rule ID IA Controls Severity
V-61033 JRE9999-UX SV-75501r2_rule DCSQ-1 High
Description
Java Runtime Environment (JRE) versions that are no longer supported by Oracle for security updates are not evaluated or updated for vulnerabilities leaving them open to potential attack. Organizations must transition to a supported Java Runtime Environment (JRE) version to ensure continued support.
STIG Date
Java Runtime Environment (JRE) version 6 STIG for Unix 2015-12-10

Details

Check Text ( C-61975r2_chk )
Oracle support for Java Runtime Environment (JRE) 6 for Unix ended 2013 Feb. If JRE 6 for Unix is installed on a system, this is a finding.

If an extended support agreement providing security patches for the unsupported product is procured from the vendor, this finding may be downgraded to a CAT III.
Fix Text (F-66773r1_fix)
Upgrade Java Runtime Environment (JRE) 6 for Unix software to a supported version.