Apple updates Java in Mac OS X, issues iOS Exchange bugfix

Powered by SC Magazine
 

Jailbreaks still possible.

Apple is distributing a security update plugging some 38 security holes in Oracle's Java for Mac OS X.

The update comes after the company disclosed that several employees' computers were infected by malware exploiting vulnerabilities in Java, after visiting a website for software developers.

In its advisory for the security update, Apple stated that "multiple vulnerabilities existed in Java 1.6.0_37, the most serious of which may allow an untrusted Java applet to execute arbitrary code outside the Java sandbox".

"Visiting a web page containing a maliciously crafted untrusted Java applet may lead to arbitrary code execution with the privileges of the current user," Apple stated.

"These issues were addressed by updating to Java version 1.6.0_41."

The security fix can be obtained via the built-in Software Update utility in OS X, or downloaded from Apple's support site.

A malware remover is also included in the Java security update.

Separately, Apple pushed out the 6.1.2 update for its iOS mobile operating system. This update is said to sort out a bug that affected Microsoft Exchange server calendars, causing excessive logging as well as network activity on iPhones which in turn reduce battery life.

However, the update does not plug the vulnerabilities used to jailbreak iDevices, to allow users to run software not authorised by Apple.

Confirming this, iTnews was able to succesfully jailbreak an iPhone 5 device using the evasi0n kit, after updating the phone operating system to iOS 6.1.2.

Copyright © iTnews.com.au . All rights reserved.


Apple updates Java in Mac OS X, issues iOS Exchange bugfix
 
 
 
Top Stories
Beyond ACORN: Cracking the infosec skills nut
[Blog post] Could the Government's cybercrime focus be a catalyst for change?
 
The iTnews Benchmark Awards
Meet the best of the best.
 
Telstra hands over copper, HFC in new $11bn NBN deal
Value of 2011 deal remains intact.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
Who do you trust most to protect your private data?







   |   View results
Your bank
  38%
 
Your insurance company
  4%
 
A technology company (Google, Facebook et al)
  8%
 
Your telco, ISP or utility
  8%
 
A retailer (Coles, Woolworths et al)
  3%
 
A Federal Government agency (ATO, Centrelink etc)
  19%
 
An Australian law enforcement agency (AFP, ASIO et al)
  14%
 
A State Government agency (Health dept, etc)
  6%
TOTAL VOTES: 1883

Vote
Do you support the abolition of the Office of the Information Commissioner?