Click to See Complete Forum and Search --> : vulnerability in Sun Java


DaveSW
10-27-2003, 02:38 AM
Just thought you guys might like to know this one, as most browsers other than IE use it.

Quote from my virus alert email earlier:

Madrid, October 24, 2003 - A vulnerability has been detected in Sun Java
Runtime Environment (JRE) that can be exploited to design malignant applets.
This security flaw has been fixed in the latest versions of Sun SDK/JRE,
which are already available for download.

Through this vulnerability an untrusted, unsigned applet can avoid the
security restrictions in the sandbox (*). This flaw could also allow
arbitrary code to be run on the system in order to carry out any kind of
action.


More info is available
http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert/57221

Sux0rZh@jc0rz
10-27-2003, 06:58 AM
opera is affected by this then? (asking)

DaveSW
10-27-2003, 10:30 AM
Proabably. All browsers which use the Java JRE. That includes Opera and Mozilla I think. However, if you have more than one of these browsers they will probably use the same Java engine.

IE won't be affected (I don't think).

Stuff like Sun Staroffice will use it too.