Slashdot Mirror


Java Exploit Patched? Not So Fast

PCM2 writes "The Register reports that Security Explorations' Adam Gowdiak says there is still an exploitable vulnerability in the Java SE 7 Update 7 that Oracle shipped as an emergency patch yesterday. 'As in the case of the earlier vulnerabilities, Gowdiak says, this flaw allows an attacker to bypass the Java security sandbox completely, making it possible to install malware or execute malicious code on affected systems.'"

5 of 87 comments (clear)

  1. Re:Arrrrrg by Jeremiah+Cornelius · · Score: 4, Funny

    Oracle should be "patched" by Anonymous.

    --
    "Flyin' in just a sweet place,
    Never been known to fail..."
  2. WORE by tobiasly · · Score: 5, Funny

    Oracle should be commended for finally bringing their "Write Once, Run Everywhere(tm)" vision to the exploit community.

    1. Re:WORE by sjames · · Score: 3, Funny

      Honest to God, when I glanced at the subject, I read it as "WHORE" which seems somewhat apt for Java these days.

  3. Re:Arrrrrg by LordLimecat · · Score: 5, Funny

    Sandbox [Java VM] externally

    Using what, a VM?

    Yo dawg, I heard you liked virtual machines...

  4. Not so fast by MobileTatsu-NJG · · Score: 5, Funny

    Not so fast.

    Isn't that Java's mission statement?

    --

    "I like to lick butts!" by MobileTatsu-NJG (#32700246) (Score:5, Informative)