ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Desktop platforms Toolkit in association with http://ad.doubleclick.net/clk;205413468;14699245;m?http://adfarm.mediaplex.com/ad/ck/2397-58840-22058-14

Mac OS X gets patches

Joris Evers CNET News.com

Published: 03 Aug 2006 09:20 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Apple on Tuesday issued updates for its Mac OS X operating system to fix 26 security flaws, some serious.

Several of the vulnerabilities affect the way in which Mac OS X handles images and the file-sharing capabilities of the software, according to an Apple security advisory. Other flaws were found and fixed within components such as Fetchmail, file compression features, and DHCP networking functionality, Apple said.

The vulnerabilities could enable a variety of attacks, security company Symantec said in an advisory sent out to customers of its DeepSight intelligence service. "Remote attackers can execute arbitrary code, trigger denial-of-service conditions, elevate privileges, and disclose potentially sensitive information," Symantec said.

Apple credits a number of security researchers with finding the flaws. These include researchers employed by Google and Mozilla, as well as Tom Ferris, a freelance security researcher who has disclosed limited information on some Apple bugs in the past.

The bulk of the Mac OS X flaws affect both the client and server versions of the operating system. Attackers could exploit several of the vulnerabilities, specifically those related to image processing and file compression, by crafting malicious files and tricking people into opening them, Apple said. This attack method is seen often on computers that run Microsoft's Windows operating system.

A handful of flaws related to file sharing, handled by the Mac OS X AFP server, could expose user data or let a malicious user gain elevated privileges a system running Mac OS X or cause a crash, Apple said.

The update also increases the length of the passkey used for pairing Bluetooth devices with Mac computers, Apple said. This could provide enhanced security for the use of Macs with wireless devices that use Bluetooth technology.

Mac OS X users are urged to upgrade in order to protect their systems against possible attacks that may exploit the flaws. Symantec said that it doesn't know of current attack code for any of the issues, though some may not require specific exploit code, the company said.

Apple has released Security Update 2006-004 to address the issues. The update is available from the Software Update pane in System Preferences on Mac OS X systems or through Apple's Web site. Apple's previous security update came out in late June.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
186 out of 280 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:








Related Jobs

2nd Line Support / Field Support Engineer needed

My client based in South Yorkshire, urgently requires 6 field support engineers / 2nd line support to effectively assist in the companies 1000 PC ...

Unix Administrator - Solaris - 10 Months rolling

Windows and MAC OS expeirence is a bonus. Competitive rates, immediate start. Unix engineer required for fast paced media client. Experience with ...

Infrastructure Engineer ( Novadigm Radia )

Understand the limitations, constraints and relationships of Radia infrastructure to ensure changes and implementations do not affect the integrity ...

Featured Talkback

So if you upgrade to XP SP3 you can't uninstall Internet Explorer, I'm quite sure I'm having a Deja-vu feeling about MS preventing people from uninstalling Internet Explorer in other Windows products.

By: TheKLF99

Read full story:
Upgraders to XP SP3 warned over IE downgrades

Desktop Management Benchmarking

Test Your Desktop Management Systems

How good are your company's desktop management solutions? How do they compare with those of your peers?

Take two minutes to complete our new Desktop Management and Energy Consumption benchmark, and find out what issues your business needs to focus on.