Oracle Patches Java Zero Day

  • Thread starter Thread starter LabZero
  • Start date Start date
Status
Not open for further replies.
L

LabZero

Thread author
Oracle has released its quarterly patch update, which includes fixes for nearly 200 vulnerabilities. The most notable bug fixed in this release is the Java zero day that’s been used in an ongoing attack campaign.

The massive release from Oracle has patches for a long list of products, but the Java vulnerabilities are the heart of the July update. There are more than two dozen patches for Java this quarter, at least one of which is being exploited actively.

“Also included in this Critical Patch Update are 25 fixes Oracle Java SE. 23 of these Java SE vulnerabilities are remotely exploitable without authentication. 16 of these Java SE fixes are for Java client-only, including one fix for the client installation of Java SE. 5 of the Java fixes are for client and server deployment. One fix is specific to the Mac platform,” Eric Maurice from Oracle said in a blog post.

Read more
 
This is why everybody should make sure they are up-to-date with any software installed on their system, because if they do not, they may be left vulnerable to known vulnerabilities which had been already patched.
 
Vulnerabilities = generate money as income, that's the reason why those who wanted to find lots of holes are throughly ethusiastic.

That's the part of cycle to make the software pretty busy in active development.
 
Status
Not open for further replies.

You may also like...