HomeSpacer
TV
Spacer
MOVIES
Spacer
MUSIC
Spacer
FASHION
Spacer
GEEKS
Spacer
BOOKS
Spacer
ART
Spacer
COMEDY
Spacer
DANCE
Spacer
CLASSICAL
Spacer
OPERA
Spacer
TRAVEL
Spacer
FITNESS
Spacer
THEATER
 
 LOG IN | REGISTER NOW!

GEEKS TODAY
TOP TOPICS
TOP MOBILE APPS
ABOUT US

Paging James Gosling! Oracle Says Java Now Patched and Ups to 'High Security'

Paging James Gosling! Oracle Says Java Now Patched and Ups to 'High Security'

Where's James Gosling when you need him? It's been a bumpy road for Oracle since they acquired Java, but today Oracle has just released Security Alert CVE-2012-0422 to address two vulnerabilities affecting Java in web browsers.

Those using Java on the client side, should grab it ASAP.

These vulnerabilities do not affect Java on servers, Java desktop applications, or embedded Java. The vulnerabilities addressed with this Security Alert are CVE-2013-0422 and CVE-2012-3174. These vulnerabilities, which only affect Oracle Java 7 versions, are both remotely exploitable without authentication and have received a CVSS Base Score of 10.0. Oracle recommends that this Security Alert be applied as soon as possible because these issues may be exploited "in the wild" and some exploits are available in various hacking tools.

The exploit conditions for these vulnerabilities are the same. To be successfully exploited, an attacker needs to trick an unsuspecting user into browsing a malicious website. The execution of the malicious applet within the browser of the unsuspecting users then allows the attacker to execute arbitrary code in the vulnerable system. These vulnerabilities are applicable only to Java in web browsers because they are exploitable through malicious browser applets.

With this Security Alert, and in addition to the fixes for CVE-2013-0422 and CVE-2012-3174, Oracle is switching Java security settings to "high" by default. The high security setting requires users to expressly authorize the execution of applets which are either unsigned or are self-signed. As a result, unsuspecting users visiting malicious web sites will be notified before an applet is run and will gain the ability to deny the execution of the potentially malicious applet. Note also that Java SE 7 Update 10 introduced the ability for users to easily disable Java in their browsers through the Java Control Panel.

Leave Comments


Past Articles by This Author:
  • Samsung Home Appliances Cooks Up Global Collaboration with Visionary Chefs to Inspire a Home Life, Well-Lived
  • More Than 150 Organizations Use Five9 via the Salesforce Platform to Accelerate Customer Company Transformation
  • Facebook Caves, Introduces Hashtags
  • comScore Report: Google Sweeps Search Engine Market in May
  • HP Delivers a Common Architecture for Converged Cloud
  • Diamond Multimedia Announces Wireless Router, Wireless Repeater Range Extender, Wireless Access Point and Wireless Bridge 4 in 1 Device
  • Samsung Galaxy Note 8.0 to Be AT&T Exclusive 'In the Coming Weeks'
  • AT&T Receives Highest Rating in Gartner U.S. Wireless Telecom Services Report
  • Embedded Computing Design Names Uniquify's Josh Lee Top Innovator
  • Solarflare to Speak at Red Hat Summit

    More Articles by This Author...

  • Get News & Specials!

    FLIPBOARD
    SAMSUNG
    APPLE
    AMAZON
    VERIZON
    GOOGLE
    MICROSOFT
    BELKIN
    SEAMLESS
    NETFLIX

    CBS ABC HBO GAMING ACCESSORIES CLOUD MOBILE DISNEY SMASH THE CW

    Amazon Offering Multiple PlayStation 4 Packages; All Will Release Date Guarantees PLAYSTATION 4 Amazon Offering Multiple PlayStation 4 Packages; All Will Release Date Guarantees
    First Screenshots Revealed of iOS 7 on the iPad and iPad Mini! NEWS First Screenshots Revealed of iOS 7 on the iPad and iPad Mini!
    AT&T iPhone 5 and 4S Getting Wireless Emergency Alert Updates TODAY AT&T iPhone 5 and 4S Getting Wireless Emergency Alert Updates TODAY
    Apple Rumor Roundup 5/6 - Will We Get an iPad Mini WITH Retina in Q3? APPLE Apple Rumor Roundup 5/6 - Will We Get an iPad Mini WITH Retina in Q3?
    Facebook Introduces Hashtags, What Does it Mean for Privacy? Danger. FACEBOOK Facebook Introduces Hashtags, What Does it Mean for Privacy? Danger.
    Apple iPhone Rumor Roundup 6/13 - Is Apple Considering a 4.7 inch or 5.7 inch Screen? APPLE Apple iPhone Rumor Roundup 6/13 - Is Apple Considering a 4.7 inch or 5.7 inch Screen?
    Gartner Says Cloud Office Systems Total 8 Percent of the Overall Office Market and Will Rise to 33 Percent by 2017 RESEARCH Gartner Says Cloud Office Systems Total 8 Percent of the Overall Office Market and Will Rise to 33 Percent by 2017

    BWW TV World Logo
      
    BWW Movies World Logo
      
    BWW Fashion World Logo
      
    BWW Music World Logo
    BroadwayWorld.com Logo
      
    BWW Opera World Logo
      
    BWW Dance World Logo
      
    BWW Classical World Logo

    All Materials Copyright 2013 Wisdom Digital Media | Privacy Policy | RSS/XMLFeeds