On TV.com: MAD MEN: You Say You Want a Revolution
BNET Business Network:
BNET
TechRepublic
ZDNet

By Joris Evers
Posted on ZDNet News: Sep 21, 2006 9:10:00 PM

A trio of security flaws in Apple Computer software that runs wireless-networking hardware could allow Macs to be hijacked over Wi-Fi, Apple said Thursday.

The Cupertino, Calif.-based company released security updates to repair the problems, which together affect the AirPort wireless driver in Mac OS X 10 Panther version 10.3.9 and Mac OS X Tiger 10.4.7, according to Apple's security alert. Both Intel-based and Power PC-based versions of the Mac operating system are affected, on regular computers as well as on servers, Apple said.

"Attackers on the wireless network may cause arbitrary code execution," Apple said in the alert describing one of the flaws. "Arbitrary code execution" means the intruder can commandeer the system. The other two flaws allow the same type of compromise, but can also cause system crashes or, in one case, privilege escalation, the Mac maker said.

Click here to Play

Video: Breaking into a MacBook
Flawed Wi-Fi drivers can expose PCs. In this video from Black Hat, two security researchers show that they can break into a laptop.

There are no known exploits for the vulnerabilities addressed by the update, Apple said. This means people should not be under immediate threat of attack.

Apple's security patches come a month after security researchers at SecureWorks demonstrated at the Black Hat security confab how an attacker could gain complete control over a laptop by sending malformed network traffic to a vulnerable computer. They showed a video of a successful attack on an Apple MacBook.

The researchers used a third-party wireless card in the MacBook for their demonstration, but said the AirPort wireless technology built into the laptop was also vulnerable, creating controversy in the Apple community.

In a statement released after Black Hat in August, Apple critiqued SecureWorks for saying Macs were insecure. "Despite SecureWorks being quoted saying the Mac is threatened, they have provided no evidence that it is," a company representative said at the time.

But Apple's security patches are not related to the Black Hat presentation, a company representative told CNET News.com on Thursday. Instead, the company itself hunted for bugs in its wireless software and uncovered the vulnerabilities, the representative said.

"In August, SecureWorks approached Apple with a potential flaw that they felt could affect wireless drivers on Macs," the representative said. "They did not supply us with any information to allow us to identify a specific problem, so we initiated an internal audit."

"Today's update preemptively strengthens our drivers against potential vulnerabilities, and while it addresses issues found internally by Apple, we are open to hearing from security researchers on how to improve security on the Mac," the representative added.

A SecureWorks representative did not have an immediate comment.

The three vulnerabilities addressed by Apple all have to do with how the AirPort wireless driver handles "frames." An attacker could exploit the flaw by crafting a malicious frame and making it available on a wireless network used by vulnerable Macs, Apple said.

The first of the flaws, identified by CVE-2006-3507, affects Power Mac, PowerBook, iBook, iMac, Mac Pro, Xserve and Power PC-based Mac minis equipped with wireless capabilities. The second issue, identified by CVE-2006-3508, impacts Intel-based Mac mini, MacBook and MacBook Pro computers equipped with wireless. CVE, or Common Vulnerabilities and Exposures, is a list that provides an index of standardized names for vulnerabilities.

The third problem, identified by CVE-2006-3509, is specific to how the AirPort wireless driver interacts with third-party wireless software, according to Apple. It also impacts Intel-based Mac mini, MacBook and MacBook Pro systems equipped with wireless.

The Mac OS security updates are available via Apple's software update utility in the operating system, and from Apple's download site. Only one update is required, and the utility will present the applicable fix, Apple said.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 82 Talkback(s)
Hold on a sec,cowboy...
Krebs reported an out-of-the-box MacBook was vulnerable to an 'identical exploit', no?

Yet in a link from the SecureWorks site, Techworld reports that: "The issue [the BlackHat exploit] isn't w... (Read the rest)
Posted by: tangent001 Posted on: 10/02/06 You are currently: a Guest | | Terms of Use
Apple: Macs vulnerable to Wi-Fi hijacks  Loverock Davidson | 09/21/06
Get r Done  code_Warrior | 09/21/06
Bad reporting here  Predrag Vasic | 09/21/06
Appearently you have no clue.  Cayble | 09/25/06
You missed this part of the article  tic swayback | 09/21/06
Even Unpatched?????  wolf_z | 09/22/06
I'll get around to it  tic swayback | 09/22/06
Wait?  KTLA | 09/22/06
You need to supply a password  tic swayback | 09/22/06
So much for the fanboy denial  flatliner | 09/21/06
Sorry took the day off...sick.  Laff | 09/21/06
Hey! Give us a minute!  tic swayback | 09/21/06
Sorry!  Len Rooney | 09/21/06
No need to Patch Vulnerability  bka1959 | 09/21/06
That's actually one of the best parts!  Ken_z | 09/21/06
I Know  bka1959 | 09/22/06
Apple enthusiasts, being a credit to their race and sex...  Confused by religion | 09/21/06
So I guess I'll start....  crash89 | 09/21/06
Wow! Great apology from a Windows user! (NT)  nomorems | 09/21/06
I do use Windows....  crash89 | 09/22/06
I don't attack other users.  nomorems | 09/22/06
Whether it is the SAME vulnerability or not is up for debate..  doctorSpoc | 09/22/06
even if it is the secureWorks boys are unprofessional..  doctorSpoc | 09/22/06
Did you read the article?  tic swayback | 09/21/06
So let me get this straight  mdemuth | 09/21/06
I just want to know the truth  tic swayback | 09/21/06
Yes I would  mdemuth | 09/21/06
I still want to know...  Monkey_MCSE | 09/22/06
seriously... when is a couple of days a month and a half...  doctorSpoc | 09/22/06
Here's an idea...  craptacular@... | 10/02/06
Tic - welcome to the real world  TonyMcS | 09/21/06
And no complaints from me either.  nomorems | 09/21/06
Actually...  zkiwi | 09/22/06
The "Real" world? Hardly  tic swayback | 09/22/06
re:Did you read the article?  Arm A. Geddon | 09/21/06
Dude, open your eyes  georgeou | 09/22/06
Here's a hint George...  Monkey_MCSE | 09/22/06
Stalking the unicorn  tic swayback | 09/23/06
Hold on a sec,cowboy...  tangent001 | 10/02/06
Well...  zkiwi | 09/21/06
re: well...  Arm A. Geddon | 09/21/06
re: well...  Arm A. Geddon | 09/21/06
re: well...  Arm A. Geddon | 09/21/06
re: well...  Arm A. Geddon | 09/21/06
wtf? that's a first for me at ZD dot Net for multiple posts.  Arm A. Geddon | 09/21/06
It actually WAS a victory for George  John Zern | 09/22/06
where'd you pull that one from John?  Monkey_MCSE | 09/22/06
Same old strawman  tic swayback | 09/22/06
No, not at all  zkiwi | 09/23/06
Milly is a crazy, Milly is a crazy, La La, La La, and she fell down!  nomorems | 09/21/06
Not cool dude  Shelendrea | 09/22/06
I will leave it to the readers of this forum...  Confused by religion | 09/22/06
My apology  tic swayback | 09/22/06
LOL, what did you expect Apple to say?  Qbt | 09/21/06
so I take it, you'll believe George_Ou's side when it comes out? (nt)  Arm A. Geddon | 09/21/06
Yeah right  zkiwi | 09/21/06
"Not everyone is that gullible, though."  nomorems | 09/21/06
"Not everyone is that gullible"? Do you use Windows?  Laff | 09/22/06
By the way, did anyone notice how this story moved from 6th place  nomorems | 09/21/06
Message has been deleted.  opensourcepro | 09/22/06
Tru Dat!! but I think the question for everyone is "Can  Laff | 09/22/06
No big issue here .  Intellihence | 09/22/06
Maybe this is a stupid question....  crash89 | 09/22/06
Since this was a driver problem, Intel released  georgep_z | 09/22/06
ROFL...  Badgered | 09/22/06
You do?  zkiwi | 09/22/06
Z, I ask that everyone now consider it...  Monkey_MCSE | 09/22/06
it's true...  doctorSpoc | 09/22/06
YAWN  Shelendrea | 09/22/06
You know  Rick_K | 09/22/06
Bottom Line...  doctorSpoc | 09/22/06
only now...who do we believe?  Monkey_MCSE | 09/22/06
Well I believe you..  TonyMcS | 09/24/06
pot, meet the kettle  rwahrens1952 | 09/25/06
not so fast...  rwahrens1952 | 09/25/06
More importantly, the hate works both ways  Boot_Agnostic | 09/23/06
Hate is right  TonyMcS | 09/24/06
Well  Boot_Agnostic | 09/25/06
Admission of humanness  Jim Hussey | 09/25/06
You couldn't have said it better nt  comp_indiana | 09/25/06
Thanks for not saying 'told you so'  Boot_Agnostic | 09/26/06
apple and humanness  nix_hed | 09/26/06

What do you think?

advertisement
advertisement

White Papers, Webcasts, and Downloads