This will have a pretty bad effect on Firefox's market-share if it goes live. That said, it's a solution for the current problem and should really be applied to all plugins - I'm not sure why java is singled out here, many of the other browser plugins are just as bad. Java has likely the most widely publicized security vulnerabilities, yet I can guarantee you that many many 0-days are traded daily for practically eve…
In Firefox 24 and following, mark all versions of Java as unsafe
21–30 of 184 posts
Re: In Firefox 24 and following, mark all versions of Java as unsafe
#22Earlier quoted context omitted.
> This will have a pretty bad effect on Firefox's market-share if it goes live. It's already live. ff24 is the current stable.
Oh interesting - hard to keep track of which version Firefox is up to these days. They should really swap to a system like Ubuntu's - using the date for the version number. It was released over a month ago too. Has it had any effect on Firefox's market-share? Especially in enterprise? It's a pretty decent test bed for understanding how users react to these kinds of changes. If they just accept them and adapt when for…
Re: In Firefox 24 and following, mark all versions of Java as unsafe
#23Earlier quoted context omitted.
> This will have a pretty bad effect on Firefox's market-share if it goes live. It's already live. ff24 is the current stable.
Oh interesting - hard to keep track of which version Firefox is up to these days. They should really swap to a system like Ubuntu's - using the date for the version number. It was released over a month ago too. Has it had any effect on Firefox's market-share? Especially in enterprise? It's a pretty decent test bed for understanding how users react to these kinds of changes. If they just accept them and adapt when for…
No, the change went live Friday: https://bugzilla.mozilla.org/show_bug.cgi?id=914690#c20
Re: In Firefox 24 and following, mark all versions of Java as unsafe
#24Earlier quoted context omitted.
Will it? I've been browsing without Java for years, and I can only remember problems with one site (some hilarious throwback from the late 90s). For general browsing, I doubt anyone will notice a difference. Maybe for corporate use, but isn't that mostly IE anyway?
Depends on where you are in the world. Java is required for online banking in Norway, while it's mostly unused in Sweden, the neighbouring country. Both use Java for online verification to government sites.
Re: In Firefox 24 and following, mark all versions of Java as unsafe
#25This will have a pretty bad effect on Firefox's market-share if it goes live. That said, it's a solution for the current problem and should really be applied to all plugins - I'm not sure why java is singled out here, many of the other browser plugins are just as bad. Java has likely the most widely publicized security vulnerabilities, yet I can guarantee you that many many 0-days are traded daily for practically eve…
Re: In Firefox 24 and following, mark all versions of Java as unsafe
#26This will have a pretty bad effect on Firefox's market-share if it goes live. That said, it's a solution for the current problem and should really be applied to all plugins - I'm not sure why java is singled out here, many of the other browser plugins are just as bad. Java has likely the most widely publicized security vulnerabilities, yet I can guarantee you that many many 0-days are traded daily for practically eve…
I doubt it. Apart from the odd algorithm demonstration I haven't found a need to enable Java in my browser for the past 10 years.
A lot of corporates and financial applications require Java.
Re: In Firefox 24 and following, mark all versions of Java as unsafe
#27Earlier quoted context omitted.
Oh interesting - hard to keep track of which version Firefox is up to these days. They should really swap to a system like Ubuntu's - using the date for the version number. It was released over a month ago too. Has it had any effect on Firefox's market-share? Especially in enterprise? It's a pretty decent test bed for understanding how users react to these kinds of changes. If they just accept them and adapt when for…
That would (and probably does, with Ubuntu) annoy people who don't use the Gregorian calendar.
Re: In Firefox 24 and following, mark all versions of Java as unsafe
#28This will have a pretty bad effect on Firefox's market-share if it goes live. That said, it's a solution for the current problem and should really be applied to all plugins - I'm not sure why java is singled out here, many of the other browser plugins are just as bad. Java has likely the most widely publicized security vulnerabilities, yet I can guarantee you that many many 0-days are traded daily for practically eve…
> This will have a pretty bad effect on Firefox's market-share if it goes live. It's already live. ff24 is the current stable.
I just assumed Java was out of date (again) and was surprised to see it still blacklisted after updating to latest version.
There's no part of the UI saying "We've permanently blocked all of Java by default". Even if you agree with the developer's ideological stance here (which you very well may not), the UX part of the job is completely botched.
Re: In Firefox 24 and following, mark all versions of Java as unsafe
#29Marking a current version as unsafe, even when there are no known exploits is simply ridiculous. I'd love to see the reaction of Mozilla if Microsoft decided to mark all Firefox releases as unsafe, and give a big security warning whenever you installed FF.
Especially if the UI for unblocking it in FF is as obtuse as the discussion implies..
Re: In Firefox 24 and following, mark all versions of Java as unsafe
#30Earlier quoted context omitted.
Depends on where you are in the world. Java is required for online banking in Norway, while it's mostly unused in Sweden, the neighbouring country. Both use Java for online verification to government sites.
and they should definitely stop doing that. for me seeing Java on the client side is a sign of bad development.