ISS is not the only vendor that is affected by the latest JRE security vulnerability. Other companies that compete with ISS have far more serious security issues with their use of JRE.
/m
At 07:12 PM 11/20/2003, Andrew Plato wrote:
Is anybody aware of the Java security problems in JRE 1.4.1_xx? Is ISS planning to release a patch to make the console compatible with the JRE 1.4.2?
I have some customers who are NOT happy that there is NOTHING from ISS on the fact that the JRE 1.4.1 has a serious security problem and so far, no word from ISS on whether the console will be updated to support 1.4.2 (which repairs the security vulnerability.)
___________________________________ Andrew Plato, CISSP President/Principal Consultant Anitian Enterprise Security
503-644-5656 Office 503-644-8574 Fax 503-201-0821 Mobile www.anitian.com ___________________________________
_______________________________________________ ISSForum mailing list [EMAIL PROTECTED]
TO UNSUBSCRIBE OR CHANGE YOUR SUBSCRIPTION, go to https://atla-mm1.iss.net/mailman/listinfo
_______________________________________________ ISSForum mailing list [EMAIL PROTECTED]
TO UNSUBSCRIBE OR CHANGE YOUR SUBSCRIPTION, go to https://atla-mm1.iss.net/mailman/listinfo
