
Read Time:18 Second
Dan Goodin / Ars Technica:
Oracle patches a vital bug in Java 15 and above, which lets attackers forge TLS certificates and signatures, two-factor authentication messages, and extra — A failure to sanity examine signatures for division-by-zero flaws makes forgeries simple. — Organizations utilizing newer variations …
Source link