That is a bit broad and alarmist, don't you think?
How about, "concerning bowser-based java attack vectors, they are exceedingly slow to respond to and correct. "
If they didn't care about this, it would NEVER be patched. Never is a very long time and I think it's unlikely that it will never be patched. They are taking their sweet, sweet time with it though.
Ok ok, maybe I went a little overboard on that statement but still it's dissapointing, especially when they use security as one of the main selling points of the OS.
An unfortunately disconnect between reality, management, and marketing.
Too much focus on new product, not enough focus on maintaining existing products.
I just got the update myself. 158 MB, no restart required. I hope it fixes this exploit as well, although I don't think I'll reactivate Java in Safari prefs.
Morod