Java Exploits by Version

W

wperry1

Does anyone have a list of Java Exploits by JRE release. I have a
couple of products I am trying to run and the vendors are telling me I
need to run old versions of Java. I am trying to impress upon
management just how risky this is and how we are opening ourselves up
to attack but it would be helpful if I could point to specific
exploits rather than just saying that old versions are not secure.
The versions we are using are JRE 5.0 Update 6 and JRE 5.0 Update 13.

Thanks in advance for any help.
 
D

David H. Lipman

From: "wperry1" <[email protected]>

| Does anyone have a list of Java Exploits by JRE release. I have a
| couple of products I am trying to run and the vendors are telling me I
| need to run old versions of Java. I am trying to impress upon
| management just how risky this is and how we are opening ourselves up
| to attack but it would be helpful if I could point to specific
| exploits rather than just saying that old versions are not secure.
| The versions we are using are JRE 5.0 Update 6 and JRE 5.0 Update 13.

| Thanks in advance for any help.

Oh G-d no...

There are just so many exploits.

Starting points...

http://java.sun.com/j2se/1.4.2/ReleaseNotes.html
http://java.sun.com/j2se/1.5.0/ReleaseNotes.html
http://java.sun.com/javase/6/webnotes/ReleaseNotes.html
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top