21 Mar 2002
Microsoft has admitted to a second vulnerability in software that allows Windows users to run programs written in Java.
More usually seen battling in the courtroom these days, Microsoft and Sun Microsystems have released joint bulletins about the vulnerabilities affecting the Java Virtual Machine (JVM) code.
A Microsoft spokesman said that, while there have been no known attempts to exploit the vulnerabilities, they were considered critical because of the harm they could cause.
The company has released a JVM update to fix both vulnerabilities.
The first flaw allows a malicious Java applet on a website to monitor a visitor's web surfing, while the second could allow a Java program to run outside a restricted area on the user's computer.
The main users at risk are those using a proxy server to access websites. Proxy servers are commonly used to cache content on frequently accessed sites, housing it on a server closer to the end user so that downloading is faster.
Latest stories from Security
Related videos
Related articles
Related jobs
Poll
Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?
TFL director of Games transport Mark Evers discusses how the public transport network is preparing for this summer's event
Connect with V3.co.uk
The wrong printers, for the wrong tasks on the wrong contracts
Who leads the BI pack and who should we be watching out for?
Lotus Notes Domino Administrators Due to the expansion...
Account Manager / Project Manager - Saas Accounting Financial...
Channel Account Manager One of the UK's most innovative...
My client is looking for an Incident & Problem Manager...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?