The new Java 0Day examined (The H)
[Posted August 30, 2012 by corbet]
The new Java 0Day examined (The H)
[Security] Posted Aug 30, 2012 13:26 UTC (Thu) by corbet
Here's an
article in The H explaining how the latest (still unpatched, apparently
known to Oracle since April) Java vulnerability works. "Oracle has
not yet released an official statement concerning the critical
vulnerability. At this article's time of publication, the company still
offered Java version 7 update 6 to download; like all older series 7
versions, this release is vulnerable to attacks via the vector described
above. Users who have a vulnerable version installed on their systems are
advised to disable the browser plugin that provides Java support."
Comments (44 posted)