News

Long-term support release candidate arrives, general availability comes next month Java 25, an LTS (long-term support) ...
Oracle Corp. released an emergency update to its Java software for surfing the Web on Sunday, but security experts said the update fails to protect PCs from attack by hackers intent on committing ...
According to Morgan, the Java bug, also known as an FTP protocol injection flaw, "allows one to fool a victim's firewall into allowing TCP connections from the Internet to the vulnerable host's ...
Attacks encourage Java bug-hunters News of this zero-day—previously unknown—Java exploit comes days after researchers from Polish vulnerability research firm Security Explorations found and ...
A Google researcher has published details of a Java virtual machine bug that could be used to run unauthorized programs on a computer. The attack was disclosed Friday by Google’s Tavis Ormandy ...
The Java update applies only to the client and server editions of Mac OS X 10.5, which are currently at v. 10.5.8. Users still running Mac OS X 10.4, aka Tiger, remain stuck on older versions of Java.
The proposal floated this week represents a further tightening up of bug-fixing goals for RDP (Rampdown Phase) 2 of the Java upgrade. The plan calls for fixing all P1 (Priority 1) bugs critical to ...
Java is enabled by default in Mac OS X browsers such as Firefox and Safari, and Tinnes said he had successfully exploited the Java bug on both browsers.
Apple issued separate updates for OS X 10.7, aka Lion, and OS X 10.6, or Snow Leopard, that quashed 11 bugs in each edition. Oracle, which maintains Java for Windows, Linux and Solaris, shipped ...
The latest bug "facilitates full Java sandbox bypass on latest Java 7 Update 7," Adam Gowdiak, the CEO of Poland-based Security Explorations, wrote in an e-mail to Ars.