Reply
Doug_Pardee
Posts: 5,421
Kudos: 3,640
Registered: ‎03-09-2010

[OT] Major security bug in Java - Macs too!

A major security hole has been discovered in Java 1.7 (not present in Java 1.6 and earlier), and it's actively being exploited by some web sites. If your browser has a Java 1.7 plug-in, the experts are recommending that you disable it immediately. This includes not just Windows users, but Mac users too (especially Mountain Lion), and even Linux.

 

From the reports, this is one very nasty bug. Basically it allows Java code automatically downloaded from a web site to completely switch off Java's security systems.

 

Distinguished Scribe
NookGardener
Posts: 703
Registered: ‎05-21-2011
0 Kudos

Re: [OT] Major security bug in Java - Macs too!

Thanks for this info Doug! 

 

Article mentions hack can exploit systems from Windows to Linux to Mac.  Doesn't mention Android.  Should NC and NT users make sure that Java isn't enabled on their devices?  Or just the plugs-ins?  Any advice would be appreciated! Thanks

Doug_Pardee
Posts: 5,421
Kudos: 3,640
Registered: ‎03-09-2010

Re: [OT] Major security bug in Java - Macs too!

Oracle has released a fixed version: Java SE 7u7. If you're using Java 7, such as in Firefox, you should treat this as a mandatory, emergency security update.

 

Bibliophile
deesy58
Posts: 1,331
Registered: ‎01-22-2012
0 Kudos

Re: [OT] Major security bug in Java - Macs too!


Doug_Pardee wrote:

Oracle has released a fixed version: Java SE 7u7. If you're using Java 7, such as in Firefox, you should treat this as a mandatory, emergency security update.

 


I have simply uninstalled Java on my machine.  What is the downside of leaving Java off my computer?

B&N Bookseller
JL_Garner
Posts: 331
Registered: ‎04-09-2009
0 Kudos

Re: [OT] Major security bug in Java - Macs too!


Doug_Pardee wrote:

Oracle has released a fixed version: Java SE 7u7. If you're using Java 7, such as in Firefox, you should treat this as a mandatory, emergency security update.

 


Thanks for posting a link to the update, Doug!

Inspired Wordsmith
gstone
Posts: 1,315
Registered: ‎09-05-2010

Re: [OT] Major security bug in Java - Macs too!


deesy58 wrote:

Doug_Pardee wrote:

Oracle has released a fixed version: Java SE 7u7. If you're using Java 7, such as in Firefox, you should treat this as a mandatory, emergency security update.

 


I have simply uninstalled Java on my machine.  What is the downside of leaving Java off my computer?



For browsing, banking, or shopping on the internet its not required.  The only time I've run into a situation that required Java was a web based game. Otherwise its just another potential security weakness in your system.

Bibliophile
deesy58
Posts: 1,331
Registered: ‎01-22-2012
0 Kudos

Re: [OT] Major security bug in Java - Macs too!


gstone wrote:

deesy58 wrote:

Doug_Pardee wrote:

Oracle has released a fixed version: Java SE 7u7. If you're using Java 7, such as in Firefox, you should treat this as a mandatory, emergency security update.

 


I have simply uninstalled Java on my machine.  What is the downside of leaving Java off my computer?



For browsing, banking, or shopping on the internet its not required.  The only time I've run into a situation that required Java was a web based game. Otherwise its just another potential security weakness in your system.


Thanks, gstone.  I think I will just leave it off my machine.