BetaONE will rise again!


 
Prev Previous Post   Next Post Next
  #1  
Old 13th Jul 07, 05:48 PM
NewsBot's Avatar
NewsBot NewsBot is offline
Senior Member
 
Join Date: Oct 2004
Posts: 30,940
NewsBot will become famous soon enough
Java flaw poses widespread security threat
Google's security team has discovered vulnerabilities in the Sun Java Runtime Environment that threaten the security of all platforms, browsers and even mobile devices.

"This is as bad as it gets," said Chris Gatford, a security expert from penetration testing firm Pure Hacking.

"It's a pretty significant weakness, which will have a considerable impact if the exploit codes come to fruition quickly. It could affect a lot of organizations and users," Gatford told ZDNet Australia.

Australia's Computer Emergency Response Team analyst, Robert Lowe, warned that anyone using the Java Runtime Environment or Java Development Kit is at risk.

"Delivery of exploits in this manner is attractive to attackers because even though the browser may be fully patched, some people neglect to also patch programs invoked by browsers to render specific types of content," said Lowe.

According to Gatford, the bugs threaten pretty much every modern device. "Java runs on everything: (mobile) phones, PDAs and PCs. This is the problem when you have a vulnerability in something so modular--it affects so many different devices."

"Also, this exploit is browser-independent, as long as it invokes a vulnerable Java Runtime Environment," Gatford added.

Pure Hacking's Gatford said the problem is compounded by the fact that organizations are unlikely to take on the daunting process of patching all of their Java Runtime vulnerabilities.

"It would be an extremely difficult and laborious process for an organization trying to patch Java Runtime across the enterprise," he said.

IPB Image View: Original Article
IPB Image News source: CNET News.com

More...
 


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Java Security Traps Getting Worse NewsBot NeoWin News 0 10th May 07 01:21 PM
Apple iTunes Security Flaw Discovered NewsBot NeoWin News 0 18th Nov 05 09:00 PM
New Cisco Flaw Could Pose Threat to Net NewsBot ieXbeta News 0 8th Sep 05 05:00 AM
Neowin Talks Security with Microsoft NewsBot NeoWin News 0 7th Feb 05 02:00 AM
Java flaw could lead to Windows, Linux attacks NewsBot NeoWin News 0 24th Nov 04 12:00 AM


All times are GMT +1. The time now is 04:33 AM.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.