Path: csiph.com!v102.xanadu-bbs.net!xanadu-bbs.net!feeder.erje.net!eu.feeder.erje.net!newsfeed.datemas.de!rt.uk.eu.org!aioe.org!.POSTED!not-for-mail From: Roedy Green Newsgroups: comp.lang.java.programmer Subject: Re: JDK 1.7.0_11 is out. Date: Mon, 14 Jan 2013 20:01:25 -0800 Organization: Canadian Mind Products Lines: 19 Message-ID: References: Reply-To: Roedy Green NNTP-Posting-Host: K2Qzzs3EAqXk5RLzfhxcSw.user.speranza.aioe.org Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit X-Complaints-To: abuse@aioe.org X-Notice: Filtered by postfilter v. 0.8.2 X-Newsreader: Forte Agent 6.00/32.1186 Xref: csiph.com comp.lang.java.programmer:21404 On Sun, 13 Jan 2013 18:24:23 -0800, Roedy Green wrote, quoted or indirectly quoted someone who said : >Presumably will fix the 0-day exploit. >I will find out after I get it myself. the release notes are at http://www.oracle.com/technetwork/java/javase/7u11-relnotes-1896856.html As I read them the "fix" is just to turn off Applets entirely, by default -- hardly a fix. Perhaps one of the group's language lawyers could see if I interpreted that correctly. -- Roedy Green Canadian Mind Products http://mindprod.com The first 90% of the code accounts for the first 90% of the development time. The remaining 10% of the code accounts for the other 90% of the development time. ~ Tom Cargill Ninety-ninety Law