Oracle released an update that patched this vulnerability back in February... for Windows.
But — Apple hasn't released the update for OS X (yet).
Related tip: how to disable Java on your Mac
Update (4/4/12): Apple has released an update to Java, available via "Software Update."
Your best option is to use a recycler who is part of the "e-Steward" network; they don't export to developing nations, and they follow other high standards. Many also will reuse and refurbish equipment.
A note to burglars: The above link is not intended for your use – just move along pleaseā¦;-))
Note: Though somewhat incomplete on the 'how to avoid' side, this information (provided by Apple) may be helpful in identifying and/or removing the malware from your system if you've downloaded it.
Copy and paste "chrome://browser/content/places/places.xul" into your address bar and go, then set it as your home page in Preferences>General (or Tools>Options>General on PC), as shown below:
As an alternative, you can create a bookmark to page to use as needed instead of making it your home page.
How to protect yourself from trojans when banking online
- Make sure your anti-virus software is up to date.
- Keep firewalls set to the highest level.
- Never open an e-mail attachment from someone you don't know.
- Never double-click on an e-mail attachment that ends in .exe. It is an 'executable' file and can do what it likes in your system.
- If you think your machine has already been infected, contact your bank immediately. If the bank thinks you are a genuine victim of fraud it will reimburse you.
Related: Social Networking Privacy: How to be Safe, Secure and Social