Advertisement
Promo

Security threats Toolkit

Apple patches 15 Mac OS X holes

Published: 08 Sep 2004 09:10 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Apple Computer released an update to its Mac OS X operating system on Tuesday to fix 15 security issues in the software.

Many of the problems are flaws in the operating system's underlying open-source software, including a critical flaw in the Kerberos authentication system -- software that can act as a gatekeeper for computer networks. The patch is available for Mac OS X 10.3.5 and Mac OS X 10.3.4, and also fixes issues in Mac OS X 10.2, known as "Jaguar."

"All security enhancements... are also available for Jaguar, if the issue could occur on Jaguar systems," a security advisory from the company said.

The patch fixes software flaws that could enable an attacker to crash or freeze the Apache 2 Web server, run software by using Apple's Safari Web browser or expose the password store used by the network. Security information provider Secunia ranked the Kerberos threat as "highly critical," its second-highest danger rating.

Apple has pointed to open-source software as a source of security for the company's operating system. While open-source projects tend to release patches as soon as possible, Apple and other companies have moved to more occasional releases of collections of patches.

Microsoft releases fixes once a month, a move that database software maker Oracle has started to do this month as well.

Apple's advisory, with details of the update, is available on the company's Web site.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
64 out of 130 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:




Video icon

Video

Sentry Posts Blog

McKinnon lawyers seek judicial review

Lawyers seeking a judicial review for Nasa hacker Gary McKinnon lodged fresh evidence of his psychiatric state at the High Court on Thursday. Karen Todner, McKinnon's solicitor,... More

1 comment

Beware of keeping your head in the clo...

Information security professionals can look forward to a deepening appreciation for their skills as security continues to be recognised as an essential element for doing business in... More

1 comment

Civil liberties groups attack file-sha...

Civil liberties and digital rights organisations have strongly criticised Lord Mandelson's Digital Economy Bill. Liberty said in a position paper on Tuesday that the bill, part of... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters