Oracle Java の脆弱性対策について(2026年7月)

Imported from official source

Announcement

2026年7月22日(日本時間)に Oracle Java に関するセキュリティ更新プログラムが公表されています。
これらの脆弱性を悪用された場合、アプリケーションプログラムが異常終了する、攻撃者によってパソコンを制御される、といった様々な被害が発生するおそれがあります。

攻撃が行われた場合の影響が大きいため、早急にセキュリティ更新プログラムを適用してください。

Oracle 社より2019年4月16日以降の Java のリリースについて、ライセンスの変更が案内されております。特に商用利用を行う組織においてはライセンスをご確認の上、ベンダの有償サポートを受ける等の適切な対応をお取りください。なお、IPA ではライセンスの詳細やサポートの内容については把握しておりませんので、Oracle 社の公開している情報をご確認いただくか、もしくは直接 Oracle 社にお問合せください。  

  • Web コンテンツ内に HTML タグを記載することで、IPA から発信する「重要なセキュリティ情報」をリアルタイムに自組織内の Web サイト上などに表示できます。脆弱性対策の促進にご活用ください。
  • This is an extract. The publication continues at the source.

    Read the original at the source: https://www.ipa.go.jp/security/security-alert/2026/0722-jre.html

    Officially imported this from Information-technology Promotion Agency (IPA)’s own source and shows an extract. If you work there, claiming the profile and verifying the domain lets you choose to show the full text here.

    Provenance

    Organization
    Information-technology Promotion Agency (IPA) — imported from official source
    Official source
    https://www.ipa.go.jp/security/alert-rss.rdf RSS
    Imported
    October 03, 2026 20:39
    Versions
    1 recorded
    Identity
    https://www.ipa.go.jp/security/security-alert/2026/0722-jre.html

    Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.