The Java 1.6 updaters Apple issued earlier this week are subject to similar caveats as affected the preceding Java 1.7 updater provided by Oracle. The Oracle patch proved to be buggy and still vulnerable to certain exploits, while Apple's 1.6 updaters apparently do not patch the 1.7 vulnerability that the Oracle updater addressed. To be sure, this vulnerability has to date only been exploited in Java 1.7, and NOT yet in Java 1.6, but it could be.

Hence, all suggestions to secure your Java configuration to your needs are still valid and recommended.


alternaut moderator