Slashdot Mirror


Apple Finally Patches Java Vulnerability

macs4all writes "Apple has finally addressed the Java vulnerability that nearly everyone else patched months ago. Available now for OS X 10.4 and 10.5, and through Apple's Software Update service, this update patches a flaw in the Java Virtual Machine that could potentially allow a malicious Java applet to execute arbitrary code on the machine. Apple had previously advised users to turn off Java temporarily in their Web browsers."

6 of 177 comments (clear)

  1. SAD :( by Anonymous Coward · · Score: 4, Insightful

    It is truly sad that Apple still just don't "Get" security. Makes me a sad panda to think it is going to take some sort of devastating worm or virus for them to finally wake up and smell the shit they are pumping out.

    1. Re:SAD :( by TinBromide · · Score: 3, Insightful

      I get the funniest looks when I say that Apple has had the benefit of security via obscurity and when it comes to security measures, Apple is now at the point where Microsoft was in 1998. Yes, mod me troll, but as you do so, you know that Apple hasn't had the same trial by fire that Microsoft has. If you look at the yearly exploit conferences, OS X doesn't fare much better than Windows, and that's only because apple has the benefit of running a bsd based kernel. Picking a more secure solution from the get-go doesn't mean that they can maintain and do the required preventative patching measures.

      --
      Is it sad that I am more likely to recognize you and your posts by your sig than your name or UID?
    2. Re:SAD :( by pjt33 · · Score: 3, Insightful

      The post I replied to said that Apple is *now* where Microsoft was in 1998.

      In fairness, the post you replied to said that

      when it comes to security measures, Apple is now at the point where Microsoft was in 1998

      not, "when it comes to number of worms, viruses and trojans, ...".

  2. Old versions. by saintlupus · · Score: 4, Insightful

    ...and this means that we can expect Vic20_love to come along any moment now and complain that his OS X 10.1 machine from 19-dickity-6 doesn't have a patch out yet, so Apple sucks.

    Not that Apple doesn't suck, but you don't really need to troll for reasons.

    (Bye, karma, nice knowing you...)

    --saint

  3. Just turn off Java by Anonymous Coward · · Score: 5, Insightful

    Apple had previously advised users to turn off Java temporarily in their Web browsers

    Even after updating, I've found that's advice I can live with.

  4. Re:Apple is not a fan of Java by konohitowa · · Score: 5, Insightful

    Yeah. Those losers should stop running their iTunes store with Java. Lame Java haters!

    http://en.wikipedia.org/wiki/WebObjects No, I didn't just edit it, but I suppose it's ripe for vandalism now.

    Not like your conjecture is without merit. I mean, what can explain their slowness in Java porting? I wish I knew. It's a real annoyance.

    To be mildly fair, us mere mortals aren't getting WebObjects updates anymore, but they don't seem to be slowing down their usage of it at iTunes & the Apple store and dev sites. Perhaps they're going to migrate more things to SproutCore once BitBurger et al gets released. Although that doesn't provide them with a back-end, and I'm not utterly convinced that RoR is up to the demand, inclusion in OS X notwithstanding. If only more Erlang/Mnesia would roll out.