Slashdot Mirror


Java Installer Flaw Shows Why You Should Clear Your Downloads Folder (csoonline.com)

itwbennett writes: On Friday, Oracle published a security advisory recommending that users delete all the Java installers they might have laying around on their computers and use new ones for versions 6u113, 7u97, 8u73 or later. The reason: Older versions of the Java installer were vulnerable to binary planting in the Downloads folder. 'Though considered relatively complex to exploit, this vulnerability may result, if successfully exploited, in a complete compromise of the unsuspecting user's system,' said Eric Maurice, Oracle's software security assurance director, in a blog post.

2 of 64 comments (clear)

  1. Java again by Anonymous Coward · · Score: 0, Troll

    The benefits of java continue

  2. Clear my downloads folder? by Anonymous Coward · · Score: 0, Troll

    How about it's a good reason to never download Java in the first place?