Java Update To Address “Active Exploitation” Of Vulnerabilities

Just days after Apple once again blocked Java, Oracle has released an update. Here’s what Oracle said that should get your attention:

The original Critical Patch Update for Java SE – February 2013 was scheduled to be released on February 19th, but Oracle decided to accelerate the release of this Critical Patch Update because active exploitation “in the wild” of one of the vulnerabilities affecting the Java Runtime Environment (JRE) in desktop browsers, was addressed with this Critical Patch Update.

While I applaud them for getting this out so fast, you have to once again ask the question about how secure Java is. After all, this is the second rush update in less than three weeks to address some sort of serious security flaw with Java.

My advice remains the same. If you don’t need Java, ditch it. If you have no choice but to run it, download this update now. And this would be true if you run Macs, PCs or anything else that uses Java. The catch is that you’ll have to hope that this update is actually somewhat secure this time.

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading