On UrbanBaby: Nanny vs. Daycare. Discuss!
BNET Business Network:
BNET
TechRepublic
ZDNet

By Joris Evers
Posted on ZDNet News: Mar 2, 2006 2:15:00 AM

Apple Computer on Wednesday released a security update for Mac OS X that fixes 20 vulnerabilities, including a high-profile Web browser and Mail flaw disclosed last week.

The set of patches addresses a variety of security flaws, including several that could let an attacker gain control over a computer running the operating system software. The patch arrives after two weeks of intense scrutiny for Apple Mac OS X safety, prompted by the discovery of two worms and the disclosure of two security flaws in that period.

The Apple security update addresses those flaws, which affect the Safari Web browser and Apple Mail client. The vulnerabilities expose Mac users to risks that are more familiar to Windows owners: the installation of malicious code through a bad Web site or e-mail because of improper validation of downloads.

Related news
Is Mac OS as safe as ever?
Trio of threats suggest hackers are eyeing the previously ignored software. Should fans worry?

The update also changes iChat, Apple's instant messaging application, to thwart instant message threats such as the Leap.A pest, which was detected recently and attacked some Apple users.

"iChat now uses Download Validation to warn of unknown or unsafe file types during file transfers," Apple said.

Aside from the previously disclosed vulnerability in Safari, the Apple patch fixes four additional security bugs. These could result in code being executed on the user's machine after viewing a malicious Web site or allow JavaScript to execute in the local domain, Apple said in its update.

Other flaws fixed in the update include four issues related to the PHP scripted programming language, two problems related to Apple's Directory Services, a problem with mounting of file servers and a bug in FileVault secure storage, which was found to be insecure in the way a FileVault image is created.

Security Update 2006-001 can be downloaded and installed via the Software Update feature in Mac OS X or from Apple Downloads.

"Apple advises Mac OS X users to keep their system current by installing this and all Mac OS X software updates," the representative said.

  • Talkback
  • Most Recent of 154 Talkback(s)
Yeah!
Someone who finally gets the point. I glad to see you like the MAC world and see the differences.
Use the MAC for what it's good for and give Windows a try for what it's good for. Give Linux a try ... (Read the rest)
Posted by: Krazyken39 Posted on: 03/14/06 You are currently: Logged In | Log out
Twenty? toadlife   | 03/01/06
Well... Qbt   | 03/01/06
It's good they were fixed:-) (nt) Richard Flude   | 03/01/06
See below.... Laff   | 03/02/06
Indeed Loverock Davidson   | 03/01/06
20 isn't too bad Mr_Dave   | 03/01/06
Indeed crampy20   | 03/02/06
Message has been deleted. Mectron   | 03/01/06
(nt)Tell us how you really feel toadlife   | 03/01/06
... and I'm sure EVERYone will take you seriously... asrai   | 03/02/06
Mectron, buddy zmud   | 03/02/06
All bow to the great and powerful Mectron BitTwiddler   | 03/02/06
Mectron has posted a Video of himself j.m.galvin   | 03/02/06
Ignorant Luddite Nradv   | 03/02/06
That's great Real World   | 03/02/06
That's a vulnerability in ZDNet's system tic swayback   | 03/02/06
Really? Real World   | 03/02/06
There is one limitation though. Letophoro   | 03/02/06
George Ou is gnashing his teeth somewhere... SkipNewarkDE   | 03/02/06
Still he proved his point nucrash   | 03/02/06
Did he? tic swayback   | 03/02/06
You forgot thatxbxtchxnicoll   | 03/02/06
George's "thesis" was more like... zkiwi   | 03/02/06
Ha java.user   | 03/02/06
no, he didnt. doh123   | 03/02/06
I stopped reading George a long time ago... el1jones   | 03/02/06
Then the question to be asked is... Jim Blaine - Bellingham WA.   | 03/02/06
how is this thatxbxtchxnicoll   | 03/02/06
Patches BEFORE any real problems occur? RADICAL! Laff   | 03/02/06
What your are appreciating is the fact that ... ShadeTree   | 03/02/06
heh heh heh...I just knew that would draw you out! Laff   | 03/02/06
I certainly can tell you what you are appreciating. ShadeTree   | 03/02/06
2005 was just a couple months back! Laff   | 03/02/06
Duhhh! ShadeTree   | 03/02/06
I know that silly! However 2005 is all you gave me. Laff   | 03/02/06
Where do you get the number 5 from? thatxbxtchxnicoll   | 03/02/06
The number 5 came from Apple's Web site ... ShadeTree   | 03/02/06
Jealous much? tic swayback   | 03/02/06
Merely pointing out it wasn't the speed of the patching ... ShadeTree   | 03/02/06
Merely pointing out... tic swayback   | 03/02/06
I'll by the safer arguement from this discussion ... ShadeTree   | 03/02/06
Easier = fewer worries tic swayback   | 03/02/06
Nope Real World   | 03/02/06
Good thing that's not Apple's strategy tic swayback   | 03/02/06
Not at all Real World   | 03/02/06
BSD-based tic swayback   | 03/02/06
and you are attacking the fact thatxbxtchxnicoll   | 03/02/06
I merely corrected the misrepresentation ... ShadeTree   | 03/02/06
and i'm mearly correcting the fact thatxbxtchxnicoll   | 03/02/06
Your the one who is wrong, ShadeTree   | 03/02/06
do you actually read what you type? thatxbxtchxnicoll   | 03/02/06
I don't have to read it I know what I said. ShadeTree   | 03/02/06
sweetheart, you need to read before you call people morons. thatxbxtchxnicoll   | 03/02/06
I take it back, I'm sorry... ShadeTree   | 03/02/06
I hate Bill Gates almost as much as Steve Jobs ajole   | 03/02/06
small correction Real World   | 03/02/06
Apple used legal Jim Blaine - Bellingham WA.   | 03/02/06
so what you are saying is that thatxbxtchxnicoll   | 03/02/06
You are wrong NonZealot   | 03/02/06
lol but.. thatxbxtchxnicoll   | 03/02/06
$250 Box? handydan918   | 03/02/06
Oops... handydan918   | 03/02/06
Mac Mini nomorems   | 03/02/06
Mac legend dead... Mike Cox   | 03/02/06
Mikey! Real World   | 03/02/06
Hey he's a MS rep right? So you should expect better than PIZZA! Laff   | 03/02/06
Definitely agree Loverock Davidson   | 03/02/06
The pizza is for the MCSE's tic swayback   | 03/02/06
Yay, free pizza justmeinok@...   | 03/02/06
Heeee's Back !!!! Linux_4u!   | 03/02/06
Premature ejac... I mean celebration Dave Mount   | 03/02/06
A little behind the curve, Mike? Dave Mount   | 03/02/06
Speaks for itself ShadeTree   | 03/02/06
You, Cox, are the legend, the legend of 1 Microsoft Way sergiovf@...   | 03/02/06
Who is this A-Hole anyway? 999ad@...   | 03/02/06
I don't know Shelendrea   | 03/02/06
Who is this Newbie anyway? dave95   | 03/02/06
Yeah really george_ou   | 03/02/06
Show some respect! Len Rooney   | 03/03/06
Yeah, right. 999ad@...   | 03/03/06
Dead? What a moronic thing to say! labarker   | 03/02/06
Fish time! shallow_diver   | 03/02/06
LOL! Nice to have you back! george_ou   | 03/02/06
Awesome Mike ... 9.5 Grimm Reaper   | 03/02/06
9.8 s_gamgee   | 03/03/06
Bravo, Mikey!!! So Many Fresh Fishies! tbbrickster_z   | 03/03/06
But this wasn't a vulnerability!! NonZealot   | 03/02/06
Matter of opinion. Laff   | 03/02/06
Yes, but let me add the other side NonZealot   | 03/02/06
Ah butt to continue on this fantasy journey... Laff   | 03/02/06
Stupidity is a terrible thing to waste. JoeBob_z   | 03/02/06
You win no matter what! tic swayback   | 03/02/06
I know, it's great! NonZealot   | 03/02/06
No, you'd still have won tic swayback   | 03/02/06
On this one issue, I AM superior NonZealot   | 03/02/06
not really an objection. thatxbxtchxnicoll   | 03/02/06
Okay, here it is NonZealot   | 03/02/06
LoL that's cheating.. thatxbxtchxnicoll   | 03/02/06
Yes, your comments are beneath you tic swayback   | 03/02/06
IE is bolted into the OS and anyone who says different is calling MS a liar nomorems   | 03/03/06
Ahhh... clear vision... Dave Mount   | 03/02/06
I believe what was actually said was that.. thatxbxtchxnicoll   | 03/02/06
not a OS vulnerability but a GUI bug... doctorSpoc   | 03/02/06
We have a master hair splitter!! NonZealot   | 03/02/06
As stated numerous times, it wasn't a vulnerability. olePigeon   | 03/02/06
Careful, you don't want to take this to its conclusion NonZealot   | 03/02/06
They'll never stop nikoli   | 03/02/06
Why thank you....:) I do have my fun!!! Laff   | 03/02/06
Darn those mac-heads! tic swayback   | 03/02/06
mac heads windowsovermac   | 03/09/06
have you ever been told thatxbxtchxnicoll   | 03/02/06
If Microsoft Re-Engineered The Ipod itanalyst   | 03/02/06
"ITAnalyst" again gets it wrong (news at 11:00) marksashton   | 03/02/06
Yeah, it looks professionally made george_ou   | 03/02/06
It's not a flaw, its a feature Boot_Agnostic   | 03/02/06
Apple on their Worst Day tystoy1   | 03/02/06
YOU ARE RIGHT!!! NonZealot   | 03/02/06
Perhaps you could think of what you consider a Mac zealot as... zkiwi   | 03/02/06
Let's see Boot_Agnostic   | 03/02/06
Somebody please think of the children.... Jeff the god of biscuits   | 03/02/06
Not you but [more inside] BlazeEagle   | 03/07/06
Their worst day?? proprietary   | 03/03/06
Yeah.... nomorems   | 03/03/06
I wonder how would this change the counting / cooking of michael_t   | 03/02/06
still trying not to laugh Shelendrea   | 03/02/06
A PC is better designed for the average person??? zkiwi   | 03/02/06
not stereotypical Shelendrea   | 03/02/06
Well... zkiwi   | 03/02/06
its only "better designed for the average person" because... thatxbxtchxnicoll   | 03/02/06
That would be a point in its favour ;) zkiwi   | 03/02/06
Nope. nomorems   | 03/03/06
Personal thoughts JCitizen   | 03/02/06
you people need to get a life or something. nich_z   | 03/02/06
and what you just said Shelendrea   | 03/02/06
Very bad! nomorems   | 03/03/06
ah, yes janerosedoe   | 03/07/06
What he said tic swayback   | 03/02/06
Don't visit here then! [text inside] BlazeEagle   | 03/10/06
Arguing about computers is STOOOPID. Jeff the god of biscuits   | 03/02/06
wait.... janerosedoe   | 03/07/06
Thanks for this! Bituin   | 03/02/06
Yeah! Krazyken39   | 03/14/06
It doesn't really matter Ed Turner   | 03/03/06
Catching up... nomorems   | 03/03/06
NO OS is 100% safe[more inside] BlazeEagle   | 03/05/06
Secure Operating Systems vf@...   | 03/06/06
secure operating systems janerosedoe   | 03/07/06
Exactly right! BlazeEagle   | 03/10/06
not secure Krazyken39   | 03/14/06
Whistling past the graveyard not gona work anymore, MAC. Welcome to the NFL johannk   | 03/06/06
Ummm... BlazeEagle   | 03/08/06
the mac falls down windowsovermac   | 03/09/06
Win. Defender windowsovermac   | 03/09/06
Hmm... Mac Attack Krazyken39   | 03/14/06

What do you think?

advertisement
advertisement

Fusion

advertisement
Click Here