Saturday November 22, 2008 7:49 AM AEST
Latest Comments
"when i login to face book it tells me i am cookies enabled what does this mean"
by celeste | Nov 21, 2008 5:15 PM
 
"Hi this is the mail I received Brett Karpman show details Nov 17 (3 days ago) Reply Atten..."
by Rodney Churchyard | Nov 20, 2008 6:13 PM
 
"security through obscurity...shows how detached HIPAA is from reality."
by priceOfFishInChina | Nov 20, 2008 1:19 PM
 
"Umm. no. The 6.5 product is mounting the offline VM image and performing a scan for patch ..."
by eric | Nov 20, 2008 8:15 AM
 
"it's great i tried it"
by divyacharan | Nov 20, 2008 12:24 AM

Apple patches DNS hole

  • Email a Friend
  • Print Page
Apple patches DNS hole
By Stewart Meagher
Aug 4, 2008 9:35 AM
Tags: Apple | finally | patches | DNS | hole
Security Update 2008-005, which is available through Software Update under the Apple icon in the menu bar also fixes a number of other security issues as follows.

Open Scripting Architecture Fixes an elevated privileges bug when loading plugins CarbonCore Fixes stack overflow in handling long file names. Potential code execution.

CoreGraphics Fixes two bugs, both code execution, one for malicious graphics the other for malicious PDFs. Data Detectors Engine Prevents engine crashes when parsing maliciously-crafted content. Disk Utility Stops local users from obtaining System privileges.

OpenLDAP Fixes an ASN parsing bug which can lead to a crash. OpenSSL Repairs range checking error which can lead to remote code execution. PHP Fixes five different bugs, one of which can lead to remote code execution.

QuickLook Blocks maliciously-crafted Microsoft Office files which can cause QuickLooks to crash or allow remote code execution. rsync Fixes path validation errors.

The 65Mb, download which is available as you read, addresses all of the above problems, some of which were first reported way back in September 2007. µ

theinquirer.net (c) 2008 Incisive Media

 
Ads by Google
Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 
Tripwire - Click here to win an iTouch
 
 
 
Patch Management Whitepapers