Sun Microsystems fixes five security bugs in Java
November 30, 2005
According to an advisory from Secunia posted yesterday, Sun's security flaws are highly critical. In fact, vulnerabilities that get that ranking (one notch below extremely critical or Secunia's most severe rating) typically open the door to a remote intruder and to full compromise of the system.
The said security flaws affect the Java Runtime Environment (JRE) in computers loaded with Microsoft Windows, Linux or Sun's own Solaris operating system.
This is the software many computer owners have on their system to run Java applications. The bugs could allow an intruder to use a Java application to inappropriately read and write files, or to run code on a victim's computer, Sun said in three separate security advisories released yesterday.
The vulnerabilities also affect specific versions of the Sun Java Software Development Kit (SDK) and Java Development Kit (JDK), according to those advisories.
The French Security Incident Response Team, or FrSIRT, rated the issues "critical" in an alert posted Tuesday.
Three of the bugs lie in application programming interface, or API, parts of the Java Runtime Environment. Another vulnerability lies in the Java Management Extensions implementation in the software. The fifth flaw is in an unspecified part of the JRE.
Sun, based in Santa Clara, Calif., is urging people to install updated software to protect their systems.
It has released updates to address the issues, including JDK and JRE 5.0 Update 4, which was actually delivered on June 23.
A newer version, Update 5, was issued in September, but Sun would not say if additional security problems were fixed in that release. The software can be downloaded from the Sun Java Web site.
Source: C-Net News
Become an authorized reseller of Proxy Sentinel™ and Firewall Sentinel™. Do like the rest of our authorized resellers and have your clients benefit the important security features of our products and solutions, while increasing your sales at the same time. Click here for all the details.
You can link to the
Internet Security web site as
much as you like. Read our section on how your company can participate in our
reciprocal link exchange program
and increase your rankings
in the major search engines such as
Site optimized by Pagina+™
Powered by Sun Hosting
Search engine keywords by Rank for Sales
Development platform by My Web Services
Internet Security.ca is listed in
Global Business Listing