Pavlov Scope

2006 February 10

Java - More vulnerabilities

Filed under: ITSec — FreyGuy @ 16:13:28

Sun’s Java libraries are having a rough time of it lately, but Sun is staying on top of the problems with quick fixes. Here is a link to the publicly available information from Sun on the vulnerabilities. This is written a little poorly and overly specifically, but the main thing to realize is that you probably need to update your runtime libraries accordingly. Additionally, simply having the old libraries available on your computer leaves it vulnerable, so please remove older versions of the JRE.

Most of the time, however, if you left the default install of the JRE, the scheduler will prompt you to download the new updates making this process a bit easier and less esoteric. However, you will still need to disable or remove the old versions as simply upgrading the existing versions won’t completely remove the vulnerability.

For a good rundown of how to handle this, check out Brian Krebs’s blog entry on the matter.

_____________________________________________________________
KevFrey

kevfrey@gmail.com
.     .    .   .  . .. .  .   .    .     .

Leave a Reply

You must be logged in to post a comment.