Yahoo! updates four-year-old Java download

By
Follow google news

Bundled with small business website builder.

Yahoo! has updated the four-year-old Java package it bundled with the SiteBuilder application that contained hundreds of vulnerabilities.

Yahoo! updates four-year-old Java download

The company targeted the SiteBuilder web site application at small businesses which would be exposed to a litany of dangerous remote attacks if they installed the Java package and then declined automatic updates for the product.

Java vulnerabilities are found in many exploit kits and underpin scores of attacks. So bad are the security risks that users are advised to disable the product if possible. 

Get the latest on Java risks and updates.

Yahoo! had shipped Java 6 version seven, krebsonsecurity reported, which Adobe released in early 2008.

The latest update, version 39, was shipped earlier this month and alone corrected 50 security flaws from the previous version.

SiteBuilder now bundles the latest Java offering, SC has found.

Yahoo! will update the Java package to version 7 at the end of the month at which time support for version 6 will end.

Got a news tip for our journalists? Share it with us anonymously here.

Copyright © SC Magazine, Australia

Tags:

Most Read Articles

The BoM has finally tamed SSL

The BoM has finally tamed SSL

Commercial spyware targeted Samsung Galaxy users for months

Commercial spyware targeted Samsung Galaxy users for months

Westpac factors post-quantum cryptography prep into "secure router" rollout

Westpac factors post-quantum cryptography prep into "secure router" rollout

Australia and US impose sanctions on North Korean cyber ops

Australia and US impose sanctions on North Korean cyber ops

Log In

  |  Forgot your password?