HomeSpacer
TV
Spacer
MOVIES
Spacer
MUSIC
Spacer
FASHION
Spacer
GEEKS
Spacer
BOOKS
Spacer
ART
Spacer
COMEDY
Spacer
DANCE
Spacer
CLASSICAL
Spacer
OPERA
Spacer
TRAVEL
Spacer
FITNESS
Spacer
THEATER
 
 LOG IN | REGISTER NOW!

GEEKS TODAY
TOP TOPICS
TOP MOBILE APPS
ABOUT US

Paging James Gosling! Oracle Says Java Now Patched and Ups to 'High Security'

Paging James Gosling! Oracle Says Java Now Patched and Ups to 'High Security'

Where's James Gosling when you need him? It's been a bumpy road for Oracle since they acquired Java, but today Oracle has just released Security Alert CVE-2012-0422 to address two vulnerabilities affecting Java in web browsers.

Those using Java on the client side, should grab it ASAP.

These vulnerabilities do not affect Java on servers, Java desktop applications, or embedded Java. The vulnerabilities addressed with this Security Alert are CVE-2013-0422 and CVE-2012-3174. These vulnerabilities, which only affect Oracle Java 7 versions, are both remotely exploitable without authentication and have received a CVSS Base Score of 10.0. Oracle recommends that this Security Alert be applied as soon as possible because these issues may be exploited "in the wild" and some exploits are available in various hacking tools.

The exploit conditions for these vulnerabilities are the same. To be successfully exploited, an attacker needs to trick an unsuspecting user into browsing a malicious website. The execution of the malicious applet within the browser of the unsuspecting users then allows the attacker to execute arbitrary code in the vulnerable system. These vulnerabilities are applicable only to Java in web browsers because they are exploitable through malicious browser applets.

With this Security Alert, and in addition to the fixes for CVE-2013-0422 and CVE-2012-3174, Oracle is switching Java security settings to "high" by default. The high security setting requires users to expressly authorize the execution of applets which are either unsigned or are self-signed. As a result, unsuspecting users visiting malicious web sites will be notified before an applet is run and will gain the ability to deny the execution of the potentially malicious applet. Note also that Java SE 7 Update 10 introduced the ability for users to easily disable Java in their browsers through the Java Control Panel.

Leave Comments


Past Articles by This Author:
  • BlackBerry to Launch BBM Messenger for iOS and Android this Summer
  • Apple vs. Samsung Update: Apple Adds Galaxy S4 to Massive Lawsuit
  • Condoleezza Rice, Walter Isaacson, Jim Collins to Headline ExactTarget Connections Sept. 17-19
  • ChannelAdvisor and Google Host Webinar to Share Tips for Success with Enhanced Campaigns
  • Leaf Unveils Second Generation of its Built-for-Business Tablet
  • BlackBerry Unveils Version 10.1 Now Available for Download for Enterprise Users
  • BlackBerry Announces Q5 a 'Youthful and Fun Smartphone'
  • BlackBerry to Webcast Keynote and Alicia Keys Performance from Orlando
  • McAfee and Intel Deliver New Model for Consumer Security - LiveSafe
  • Leaf Unveils New POS Android Tablet

    More Articles by This Author...

  • Get News & Specials!

    FLIPBOARD
    SAMSUNG
    APPLE
    GOOGLE
    T-MOBILE
    VERIZON
    BELKIN
    PANASONIC
    NETFLIX
    ELECTRONIC ARTS

    CBS HBO GAMING ACCESSORIES DISNEY SMASH CLOUD MOBILE IPHONE AMAZON

    Apple's Latest Milestone: App Store Hits 50 Billion Downloads APPLE Apple's Latest Milestone: App Store Hits 50 Billion Downloads
    Google Tells Microsoft to Remove Ad-Less YouTube App from Windows Phones GOOGLE Google Tells Microsoft to Remove Ad-Less YouTube App from Windows Phones
    Apple and Sony iRadio Negotiations Stymied by Song-Skipping APPLE Apple and Sony iRadio Negotiations Stymied by Song-Skipping
    Google TV to Receive Android Jelly Bean OS Upgrade LG ELECTRONICS Google TV to Receive Android Jelly Bean OS Upgrade
    RunKeeper Hits Pebble Smart Watch Today on iPhone and Android RunKeeper Hits Pebble Smart Watch Today on iPhone and Android
    VIDEO: Must Watch - Bill Gates Talks Steve Jobs on 60 Minutes APPLE VIDEO: Must Watch - Bill Gates Talks Steve Jobs on 60 Minutes
    ABC & Nielsen Partner to Measure Mobile Advertising Campaigns ABC ABC & Nielsen Partner to Measure Mobile Advertising Campaigns

    BWW TV World Logo
      
    BWW Movies World Logo
      
    BWW Fashion World Logo
      
    BWW Music World Logo
    BroadwayWorld.com Logo
      
    BWW Opera World Logo
      
    BWW Dance World Logo
      
    BWW Comedy World Logo
      

    All Materials Copyright 2013 Wisdom Digital Media | Privacy Policy | RSS/XMLFeeds