Slashdot Mirror


Mac OS X Users Vulnerable To Major Java Flaw

FruitWorm writes in with word of a vulnerability in Java that has been patched by everyone but Apple. "Security researchers say that Mac OS X users are vulnerable to a critical, 6-month-old, remote vulnerability in Java, a component that is enabled by default in Web browsers on this platform. Julien Tinnes notes that this vulnerability differs from typical Java security flaws in that it is 'a pure Java vulnerability' and doesn't involve any native code. It affected not only Sun's Java but other implementations such as OpenJDK, on multiple platforms, including Linux and Windows. 'This means you can write a 100% reliable exploit in pure Java. This exploit will work on all the platforms, all the architectures and all the browsers,' Julien wrote. This bug was demonstrated during the Pwn2own security challenge this year at CanSecWest, but the details were not made public at that time. Tinnes recommends that Mac OS X users disable Java in their browsers until Apple releases a security update."

5 of 306 comments (clear)

  1. Re:why specify Mac OSX by wjh31 · · Score: 0, Offtopic

    woopsy, i managed to completely overlook that little scentance. Well dont i feel a knob...

  2. Re:Java and not javascript by gaspyy · · Score: -1, Offtopic

    Microsoft is moneyhatting its way into the scene

    Indeed. The funny thing is that even though they push Silverlight, major sites drop it and go back to Flash/AIR.

    After MLB move reported a while ago on Slashdot, New York Times dropped their Silverlight reader and unveiled the Times Reader 2, which is AIR based.

  3. Ob by Hognoxious · · Score: 0, Offtopic

    The whipped cream mochafroppatopping might not be 100% organic? That's simply scandalous!

    --
    Confucius say, "Find worm in apple - bad. Find half a worm - worse."
  4. Re:To be expected by Anonymous Coward · · Score: -1, Offtopic

    Good old /. moderation. Some mac fanboy spots someone slagging off a mac and thinks its trolling.

  5. Re:why specify Mac OSX by Anonymous Coward · · Score: -1, Offtopic

    Well dont i feel a knob...

    Get your hand off my knob, pervert!