Affiliate Disclosure
If you buy through our links, we may get a commission. Read our ethics policy.

Zero-day flaw prompts Apple to block Java 7 from OS X

Apple has disabled the Java 7 plugin on Macs through its OS X anti-malware system, in order to protect users from a potentially serious security issue.


Apple's updated security measures block Java 7 in OS X. Screenshot via MacRumors.

The newly discovered zero-day flaw in Java 7 is so serious that the U.S. Department of Homeland Security has warned users to disable or uninstall it.

"We are currently unaware of a practical solution to this problem," the departments' Computer Emergency Readiness Team said. "This vulnerability is being attacked in the wild, and is reported to be incorporated into exploit kits. Exploit code for this vulnerability is also available."

But Apple has already taken measures to protect OS X users by quietly disabling the Java 7 plug-in, according to MacRumors. This was accomplished by updating the OS X "Xprotect.plist" file to require users to have installed an unreleased version of Java, "1.7.0_10-b19."

Last year, Apple stopped building its own in-house Java updates, handing responsibility over to Oracle. The company also dropped Java from the default installation of OS X 10.7 Lion in 2010.

Watch the Latest from AppleInsider TV

Java was a part of what was the most serious malware threat to the Mac, dubbed "Flashback." That trojan was estimated to have infected 600,000 Macs worldwide last year, before Oracle and Apple released Java patches to remove the malware.

43 Comments

tallest skil 15 Years · 43086 comments

And no one shed a single tear. Good riddance.

sockrolid 15 Years · 2789 comments

Java.  Party like it's 1999.

 

Or not.

coolfactor 21 Years · 2364 comments

Just the browser plug-in is blocked. MacRumors had a misleading title, and now AppleInsider has spread the same misinformation.

bigmac2 14 Years · 639 comments

Java has always do more ugliness than goods, I never understand what value it had beside being a developers shortcut.

deansolecki 14 Years · 254 comments

Portability? It's the right idea, at least.