Apple ships fix for critical Java for Mac vulnerabilities
Summary: Apple has released a Java for Mac update to fix multiple security security vulnerabilities, some serious enough to expose Mac OS X users to remote code execution attacks.
Apple has released a Java for Mac update to fix multiple security security vulnerabilities, some serious enough to expose Mac OS X users to remote code execution attacks.
According to an Apple advisory, the most serious flaw could allow an untrusted Java applet to execute arbitrary code outside the Java sandbox. This could cause computer takeover attacks if an unpatched user simply surfs to a maliciously rigged Web site.
The Java for Mac patch, available for Mac OS X v10.5.8, Mac OS X Server v10.5.8, addresses security holes in Java 1.6.0_22 and Java 1.5.0_26.
The raw details:
Multiple vulnerabilities exist in Java 1.6.0_22 and Java 1.5.0_26, the most serious of which may allow an untrusted Java applet to execute arbitrary code outside the Java sandbox. Visiting a web page containing a maliciously crafted untrusted Java applet may lead to arbitrary code execution with the privileges of the current user. These issues are addressed by updating to Java version 1.6.0_24 and Java version 1.5.0_28.
Java for Mac OS X 10.5 Update 9 can be downloaded and installed via the Software Update preferences, or from Apple Downloads.
Kick off your day with ZDNet's daily email newsletter. It's the freshest tech news and opinion, served hot. Get it.
Talkback
Ahhh the benefits of using a 6 year old computer
G5 for life!
RE: Apple ships fix for critical Java for Mac vulnerabilities
Does that mean I should start using my Dual 800 Mhz G4 again? I wonder if anyone is targeting those?
RE: Apple ships fix for critical Java for Mac vulnerabilities
RE: Apple ships fix for critical Java for Mac vulnerabilities
Older is better?
If you want to be safe, use what everyone else does not.
Malware people target the biggest user base. Java to me has become worse of a problem then Flash or Adobe reader.
RE: Apple ships fix for critical Java for Mac vulnerabilities
">air force credit union
</a></h2>
Methinks the blogger needs a flossing of the eyes...
Why Java is such a problem
RE: Apple ships fix for critical Java for Mac vulnerabilities
RE: Apple ships fix for critical Java for Mac vulnerabilities
RE: Apple ships fix for critical Java for Mac vulnerabilities
<a href="http://www.carters.com/Pajamas/carters-pajamas,default,sc.html">baby pajamas</a> | <a href="http://www.carters.com/Pajamas/carters-pajamas,default,sc.html">kids pajamas</a>
RE: Apple ships fix for critical Java for Mac vulnerabilities
RE: Apple ships fix for critical Java for Mac vulnerabilities
Your obsession with Mac bashing is sad. Besides, Steve just left us. Show some respect and store your little cry baby rants in a <a href="http://www.storagepost.com/locations/new-york/queens/">queens self storage</a> or a <a href="http://www.storagepost.com/locations/new-york/bronx">bronx self storage</a> unit.