Yahoo! updates four-year-old Java download

By
Follow google news

Bundled with small business website builder.

Yahoo! has updated the four-year-old Java package it bundled with the SiteBuilder application that contained hundreds of vulnerabilities.

Yahoo! updates four-year-old Java download

The company targeted the SiteBuilder web site application at small businesses which would be exposed to a litany of dangerous remote attacks if they installed the Java package and then declined automatic updates for the product.

Java vulnerabilities are found in many exploit kits and underpin scores of attacks. So bad are the security risks that users are advised to disable the product if possible. 

Get the latest on Java risks and updates.

Yahoo! had shipped Java 6 version seven, krebsonsecurity reported, which Adobe released in early 2008.

The latest update, version 39, was shipped earlier this month and alone corrected 50 security flaws from the previous version.

SiteBuilder now bundles the latest Java offering, SC has found.

Yahoo! will update the Java package to version 7 at the end of the month at which time support for version 6 will end.

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.

Copyright © SC Magazine, Australia

Tags:

Most Read Articles

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Medibank reveals attack vector and cost of 2022 security breach

Medibank reveals attack vector and cost of 2022 security breach

USB stick opens Windows BitLocker drives in new zero-day

USB stick opens Windows BitLocker drives in new zero-day

'ClickFix' attack tricks users into hacking themselves, ACSC warns

'ClickFix' attack tricks users into hacking themselves, ACSC warns

Log In

  |  Forgot your password?