Results 1 to 10 of 47

Thread: Java JRE updates/advisories

Hybrid View

Previous Post Previous Post   Next Post Next Post
  1. #1
    Adviser Team AplusWebMaster's Avatar
    Join Date
    Oct 2005
    Location
    USA
    Posts
    6,881

    Exclamation Java 7u65 released

    FYI...

    Java 7u65 released
    - http://www.oracle.com/technetwork/ja...s-1880261.html
    July 15, 2014

    Java 8u11
    - http://www.oracle.com/technetwork/ja...ads/index.html

    Java SE Risk Matrix
    - http://www.oracle.com/technetwork/to...l#AppendixJAVA
    "... contains 20 new security fixes for Oracle Java SE. All of these vulnerabilities may be remotely exploitable without authentication..."
    ___

    Recommended Version 7 Update 65
    - https://www.java.com/en/download/manual.jsp

    Java Uninstall Tool
    - https://www.java.com/en/download/faq...r_toolinfo.xml
    "... simplifying the process of finding and uninstalling older versions of Java. The Uninstall tool shows you a list of the Java versions on your computer and then removes those that are out of date..."
    - https://www.java.com/en/download/uninstallapplet.jsp
    ___

    - http://www.securitytracker.com/id/1030577
    CVE Reference: CVE-2014-2483, CVE-2014-2490, CVE-2014-4208, CVE-2014-4209, CVE-2014-4216, CVE-2014-4218, CVE-2014-4219, CVE-2014-4220, CVE-2014-4221, CVE-2014-4223, CVE-2014-4227, CVE-2014-4244, CVE-2014-4247, CVE-2014-4252, CVE-2014-4262, CVE-2014-4263, CVE-2014-4264, CVE-2014-4265, CVE-2014-4266, CVE-2014-4268
    Jul 15 2014
    Impact: Denial of service via network, Disclosure of system information, Disclosure of user information, Execution of arbitrary code via network, Modification of system information, Modification of user information, User access via network
    Fix Available: Yes Vendor Confirmed: Yes
    Version(s): 5.0u65, Java SE 6u75, Java SE 7u60, Java SE 8u5; and prior versions...
    ___

    - https://atlas.arbor.net/briefs/index#-1227693199
    High Severity
    17 Jul 2014

    Last edited by AplusWebMaster; 2014-07-18 at 14:08.
    The machine has no brain.
    ......... Use your own.
    Browser check for updates here.
    YOU need to defend against -all- vulnerabilities.
    Hacks only need to find -1- to get in...
    .

  2. #2
    Adviser Team AplusWebMaster's Avatar
    Join Date
    Oct 2005
    Location
    USA
    Posts
    6,881

    Exclamation Java 8u73 released

    FYI...

    Java 8u73 released
    - https://www.java.com/en/download/manual.jsp
    Recommended Version 8 Update 73
    Feb 5, 2016

    Java 8u73 Update Release Notes
    - http://www.oracle.com/technetwork/ja...s-2874654.html

    - http://www.oracle.com/technetwork/ja...ads/index.html

    - http://www.oracle.com/technetwork/to...l#AppendixJAVA
    Notes: Applies to installation of Java SE on Windows only.
    > https://web.nvd.nist.gov/view/vuln/d...=CVE-2016-0603

    - https://blogs.oracle.com/security/en..._cve_2016_0603
    Feb 05, 2016 - "... unsuspecting user (can) be tricked into visiting a malicious web site and download files to the user's system before installing Java 6, 7 or 8... vulnerability may result, if successfully exploited, in a complete compromise of the unsuspecting user’s system..."

    - https://www.us-cert.gov/ncas/current...y-Updates-Java
    February 08, 2016

    > http://www.securitytracker.com/id/1034969
    Feb 9 2016

    ... -if- you still need to use Java at all. If not - uninstall it!

    Last edited by AplusWebMaster; 2016-02-10 at 12:53.
    The machine has no brain.
    ......... Use your own.
    Browser check for updates here.
    YOU need to defend against -all- vulnerabilities.
    Hacks only need to find -1- to get in...
    .

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •