A vulnerability was discovered in the 2D subcomponent. Exceptions thrown when processing broken CFF fonts could leak system property values. This issue (CVE-2010-4471) is not exploitable when using OpenJDK on Red Hat Enterprise Linux 5 and 6; however, the fix was added as a defense in depth.
This issue has been addressed in following products: Supplementary for Red Hat Enterprise Linux 5 Supplementary for Red Hat Enterprise Linux 6 Extras for RHEL 4 Via RHSA-2011:0282 https://rhn.redhat.com/errata/RHSA-2011-0282.html
This issue has been addressed in following products: Red Hat Enterprise Linux 5 Red Hat Enterprise Linux 6 Via RHSA-2011:0281 https://rhn.redhat.com/errata/RHSA-2011-0281.html
This issue has been addressed in following products: Supplementary for Red Hat Enterprise Linux 6 Supplementary for Red Hat Enterprise Linux 5 Extras for RHEL 4 Via RHSA-2011:0357 https://rhn.redhat.com/errata/RHSA-2011-0357.html
This issue has been addressed in following products: Extras for RHEL 4 Supplementary for Red Hat Enterprise Linux 5 Supplementary for Red Hat Enterprise Linux 6 Via RHSA-2011:0364 https://rhn.redhat.com/errata/RHSA-2011-0364.html
This issue has been addressed in following products: Red Hat Network Satellite Server v 5.4 Via RHSA-2011:0880 https://rhn.redhat.com/errata/RHSA-2011-0880.html