Monday, June 28, 2021

STIG finding - JAVA Vulnerability remediation

 Remediate JAVA vulnerability
- Remove oracle JDKs and JREs from /data/apps/java
- Remove IRacle JDKs and JREs from Lmod
- Remove IBM JDKs and JRE under /data/apps/java
- Remove IBM JDKs and JREs from Lmod
- Remove old unsupported locally installed Oracle JDKs and JREs.
- Since Oracle JAVA is not free for commercial use, install RedHat supported and IBM provided JAVA and JDK/or JREs.


1. Check installed JAVA software
# rpm -qa | egrep "java|jdk" | sort
# yum erase java-1.6.0-openjdk java-1.7.0-openjdk java-1.7.0-openjdk-headless
2. Installed IBM JAVA
# yum install java-1.8.0-ibm java-1.8.0-ibm-devel java-1.8.0-openjdk java-1.8.0-openjdk-devel java-11-openjdk java-11-openjdk-devel


No comments:

Post a Comment

Git branch show detached HEAD

  Git branch show detached HEAD 1. List your branch $ git branch * (HEAD detached at f219e03)   00 2. Run re-set hard $ git reset --hard 3. ...