TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Oracle releases 127 security fixes, 51 for Java alone

58 点作者 teawithcarl超过 11 年前

9 条评论

beedogs超过 11 年前
<i>I heard that Oracle won the America&#x27;s Cup recently which leads me to give them some unsolicited advice.</i><p><i>Put the award on the shelf in your lobby, sell the ten million dollar boat and hire the engineers needed to update the Java patch cycle to monthly with the spare cash.</i><p><i>3+ billion devices will thank you.</i><p>Spot on. Working with their products on a daily basis, I just get the feeling that Oracle doesn&#x27;t really give a shit about anything other than that god damned boat.
评论 #6564224 未加载
评论 #6564940 未加载
评论 #6565063 未加载
jeswin超过 11 年前
I was reading this FUD whitepaper just a while back, in which they are saying OSS is unsuitable for enterprises, unscalable, untested, insecure, etc. <a href="http://www.oracle.com/us/products/middleware/cloud-app-foundation/weblogic/dod-and-open-source-software-2012277.pdf" rel="nofollow">http:&#x2F;&#x2F;www.oracle.com&#x2F;us&#x2F;products&#x2F;middleware&#x2F;cloud-app-found...</a><p>And then this.
评论 #6564120 未加载
评论 #6565010 未加载
评论 #6564107 未加载
damian2000超过 11 年前
They would gain a bit more respect by getting rid of the Ask toolbar option from the Java installer. Wonder if they actually make any significant money from that garbage.
评论 #6564063 未加载
评论 #6564134 未加载
stevoski超过 11 年前
Did I understand the article correctly...Oracle releases lots of security fixes, and the author is _critical_ of this?
评论 #6564509 未加载
_red超过 11 年前
(Mac OSX): Can anyone explain why &#x27;java --version&#x27; still produces java version &quot;1.7.0_17&quot; even though I&#x27;ve updated?<p>EDIT: Solved. Including this in case anyone runs into it. There are apparently two update mechanisms in OSX (1) From within System Preference-&gt;Java Control Panel and (2) By downloading the java file manually from Oracle.<p>I ran the update &quot;1&quot; from control panel and said system had been updated to U45, but command line didn&#x27;t reflect that.<p>After manually downloading and installing JDK from Oracle command line now reflects &quot;1.7.0_45&quot;.<p>I have no idea why this half-baked situation exist, but evidently its how it works....?
评论 #6565973 未加载
Skinney超过 11 年前
Could someone explain why Applets&#x2F;Webstart is so insecure? I know that JRE itself isn&#x27;t really bad, it&#x27;s the web-plugin for Java that has security vurnabilities. But how so?
评论 #6564476 未加载
评论 #6564043 未加载
评论 #6564809 未加载
评论 #6565074 未加载
pjmlp超过 11 年前
Every time there is a report for Java security exploits, I would like to see bug listings from other compiler runtimes, specially C and C++ ones.
评论 #6564145 未加载
评论 #6564181 未加载
Zigurd超过 11 年前
&gt; <i>&quot;51 security vulnerabilities are addressed in Java this quarter, and 50 of them affect Java Applets or Java WebStart, the plugin that runs Java in your web browser. Worse yet, all but one are remotely exploitable without authentication.&quot;</i><p>I wonder is that&#x27;s just where all the cruft is, or if Oracle is getting serious about webstart?
评论 #6565854 未加载
peterhunt超过 11 年前
Are all of these Java vulnerabilities lately recently introduced or just recently discovered?
评论 #6563957 未加载