★ wanayoo — archive 1999 https://blogs.oracle.com/java/entry/java_vulnerabilities_addressedNouvelle recherche | Portail wanayoo

Java SE 7 Update 11 Released

Oracle has released Java SE 7 Update 11, containing important security fixes. See Oracle Security Alert CVE-2013-0422 to learn more. Oracle strongly recommends that all Java SE 7 users upgrade to this release. Read the Release Notes for additional details about this release. Download Java SE 7 update 11.

A user may control, via the Java Control Panel, the level of security that will be used when running unsigned (also called "untrusted" or "sandboxed") Java apps in a browser. The user may select from five levels of security. See the "Setting the Security Level of the Java Client" documentation to see what the settings do and how users can tighten security. You can also read Henrik Stahl's blog Oracle JDK 7u10 Released with New Security Features.

Because this is an out-of schedule release remediating security vulnerabilities, going forward Oracle will increment the release number for all subsequent Java 7 releases by two numbers in order to continue having CPUs as odd numbers and limited updates as even numbers. For example, the next Java CPU release, scheduled for Feb 19, 2013, the JDK 7 release version will be renamed to Java SE 7u13.

Comments:

Thanks you oracle.

It is time to reinstall and enable java again.

Posted by Mohamed Ramadan on January 13, 2013 at 04:55 PM PST #

At last!

Posted by Carola on January 13, 2013 at 05:33 PM PST #

Windows Firefox Users who we asked to set Java Security to "Very High" are unable to upgrade their Java 7 Update 10 to Update 11.

Java 7 Update 10 and 11 - Verifying / Upgrading Java Version fails on "Very High" Security

In Java Control Panel (Windows 7) set Security to "Very High"

Using FireFox 18.0,
Go to www.java.com
Click "Verify Java Version" button

www.java.com/en/download/installed.jsp

Java verification does not complete and displays Dialog box:

Title: Application Blocked by Security Settings
Name: jreVerification
Your Security settings have blocked untrusted application from running

Is Oracle unable to sign their Java Detection Application with a valid Code Signer certificate ? Yet again another part of the JRE waiting to be exploited .

Posted by guest on January 13, 2013 at 05:39 PM PST #

How about security update for J2SE6 ?

Posted by guest on January 13, 2013 at 06:23 PM PST #

After installation, My Java Control Panel disappeared!

Posted by guest on January 13, 2013 at 07:06 PM PST #

The MAC OS/X version isn't available... why not?

Posted by guest on January 13, 2013 at 08:19 PM PST #

Any updates on v 6 as well?

Posted by Sverre on January 13, 2013 at 11:52 PM PST #

Thanks Tori! :)

Posted by guest on January 14, 2013 at 05:10 AM PST #

Is this awkward numbering scheme really necessary?

Posted by guest on January 14, 2013 at 07:37 AM PST #

I guess Homeland Security can use Java again now XD

Posted by guest on January 14, 2013 at 09:09 AM PST #

Security experts on Java: Fixing zero-day exploit could take 'two years'

ZDNET dot Com:

Security experts say you have went far enough.

Why should we turn JAVA back on?

Posted by guest on January 14, 2013 at 10:48 AM PST #

a ver quien es el valiente que va primero

Posted by sandra on January 14, 2013 at 10:56 AM PST #

Re the comment about "Application Blocked by Security Settings," it has been reproduced, and a bug has been filed. I'll publish a bug number as soon as I get it.
Thanks for the feedback.

Posted by Tori on January 14, 2013 at 01:09 PM PST #

Post a Comment:
  • HTML Syntax: NOT allowed
About

Insider News from the Java Team at Oracle!

duke
javeone logo
JavaOne Conference 2012 Content
JavaOne Latin America Dec. 4-6

Links


Search

Archives
« January 2013
SunMonTueWedThuFriSat
  
1
3
4
5
6
11
12
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
  
       
Today