• On GameSpot: Wii Fit tells 10-year-old she's fat

April 19, 2006 10:10 AM PDT

Apple issues Java security update

Last modified: April 19, 2006 11:30 AM PDT

Related Stories

Apple corrects patch trouble

March 13, 2006

Mac OS X patch faces scrutiny

March 7, 2006

Sun plugs serious holes in Java

November 29, 2005

Java flaws open door to hackers

June 14, 2005
Apple Computer has released a Java update for Mac OS X to deal with flaws, one of which could enable malicious attackers to gain access to a system.

The Java 2 Standard Edition 5.0 Release 4 update, issued Monday, fixes a vulnerability in Java Web Start. The hole could allow a specially crafted application to bypass security restrictions and access resources on a system, potentially giving entry to an intruder. Java Web Start is a technology that loads Java applications over a network such as the Internet.

The update also patches a set of bugs in the "reflection" application programming interface, or API, parts of the Java Runtime Environment. These flaws could also allow an attacker to bypass security barriers to take control of a system.

The French Security Incident Response Team, or FrSIRT, rated the issues "critical" in an alert posted Tuesday.

The issues affect Mac OS X version 10.4.5 and the corresponding server edition of the operating system, which have Java 2 built into them. Apple advises people with this software to download and install the J2SE update.

The Java problems also have an impact on Microsoft Windows, Sun Microsystems' Solaris and Linux. In February, Sun issued an alert for the Web Start flaw and the Java Runtime Environment issues in these operating systems.

Santa Clara, Calif.-based Sun said at the time that it did not believe that the Web Start vulnerability had been exploited.

See more CNET content tagged:
J2SE, Java, JRE, Java 2, Apple Computer

Add a Comment (Log in or register) 40 comments (Showing first 20 comments)
So begins another MAC vs PC war
by mrpeabody3119 April 19, 2006 11:47 AM PDT
I want a clean fight.... MS fanboys - marketshare, MAC fanboys - It is the users fault (no really)
Reply to this comment View all 2 replies
So begins another MAC vs PC war
by mrpeabody3119 April 19, 2006 11:47 AM PDT
I want a clean fight.... MS fanboys - marketshare, MAC fanboys - It is the users fault (no really)
Reply to this comment View all 2 replies
Only one to fix?
by shadowself April 19, 2006 12:04 PM PDT
"The Java problems also have an impact on Microsoft Windows, Sun Microsystems' Solaris and Linux."

So is Apple the only one to have fixed this?
OR
Is Apple the last one to fix this?
Reply to this comment View all 2 replies
Only one to fix?
by shadowself April 19, 2006 12:04 PM PDT
"The Java problems also have an impact on Microsoft Windows, Sun Microsystems' Solaris and Linux."

So is Apple the only one to have fixed this?
OR
Is Apple the last one to fix this?
Reply to this comment View all 2 replies
Just a suggestion...
by Ganymede28211 April 19, 2006 1:02 PM PDT
I suggest that they add support to ad-ware and virus scanners to detect and remove any software that is deemed a total pain in the rear-end... First on the list.. JAVA.. in any variant on any OS....
Reply to this comment
Just a suggestion...
by Ganymede28211 April 19, 2006 1:02 PM PDT
I suggest that they add support to ad-ware and virus scanners to detect and remove any software that is deemed a total pain in the rear-end... First on the list.. JAVA.. in any variant on any OS....
Reply to this comment
Gee ...
by Thomas, David April 19, 2006 1:19 PM PDT
I installed this update yesterday. Very interesting, that the "news" isn't "news" at all. Sort of after the fact. The point of "news" is to inform the public, or community, about something they don't know about.

Given this was an update to the Java runtime system, that included enhancements, as well as fixes, I can't figure out the "news" angle.

But I guess some alarmism is needed to keep as many viewers as possible.
Reply to this comment View reply
Gee ...
by Thomas, David April 19, 2006 1:19 PM PDT
I installed this update yesterday. Very interesting, that the "news" isn't "news" at all. Sort of after the fact. The point of "news" is to inform the public, or community, about something they don't know about.

Given this was an update to the Java runtime system, that included enhancements, as well as fixes, I can't figure out the "news" angle.

But I guess some alarmism is needed to keep as many viewers as possible.
Reply to this comment View reply
More missing information
by J.G. April 19, 2006 7:01 PM PDT
The article also does not make it clear that up-to-date Mac users
are already in 10.4.6. That should have been included since many
people would think from reading it that they are pass an issue the
article says is associated with 10.4.5.
Reply to this comment
More missing information
by J.G. April 19, 2006 7:01 PM PDT
The article also does not make it clear that up-to-date Mac users
are already in 10.4.6. That should have been included since many
people would think from reading it that they are pass an issue the
article says is associated with 10.4.5.
Reply to this comment
 See all 40 Comments >>
Powered by Jive Software
advertisement

Latest tech news headlines

Resource center from News.com sponsors
You Need The Speed of Norton 2009
Introducing Norton Internet Security™2009

Click Here!
With one-click, one-minute install, under 8MB of memory usage and fewer, shorter scans, it's the fastest security suite anywhere. Norton. Smart Security, Engineered for Speed. Get a FREE trial today!

Click Here!
The Fastest Security Suite Anywhere

Experience the revolutionary Norton Internet Security™ 2009. With Norton™ Insight, a new feature, you get precision security that targets only at risk files for fewer, faster, shorter scans

Win a Trip to Space!*

Enter the Blast Off with Norton Sweepstakes for your shot at a trip to space. You could experience being fast and weightless, just like the new Norton 2009. *No purchase necessary; click for full details.

FREE Trial!

Act now to get your FREE trial of Norton Internet Security 2009. Try it for the protection. Love it for the speed

Norton Safe Web NEW!

A community-based system that rates web site safety

Norton Labs NEW!

Users can download new security technologies and share input directly with developers. Help us shape our future products!

RSS Feeds

Add headlines from CNET News to your homepage or feedreader.

More feeds available in our RSS feed index.

advertisement

Inside CNET News

Scroll Left Scroll Right