Mac OS X Security Update 2006-004 released

Apple products and Mac operating systems. Including discussions on Virtual PC for Mac, Parallels Desktop for Mac, all Apple hardware and everything relating to Mac!
(MacCentre701)

Moderator: Mandrake

Mac OS X Security Update 2006-004 released

Postby J-M » Tue 01 Aug, 2006 4:45 pm

Apple has released Security Update 2004-004, more details at this document:

http://docs.info.apple.com/article.html?artnum=304063
UserAgent: Mozilla/5.0 (Windows; U; Windows NT 5.0; fi; rv:1.8.0.5) Gecko/20060719 Firefox/1.5.0.5
User avatar
J-M
diamond member
diamond member
 
Posts: 815
Joined: Sun 25 Jul, 2004 9:16 am
Location: Helsinki, Finland

Postby Antony » Tue 01 Aug, 2006 8:04 pm

The browser related update in this release is...
WebKit

CVE-ID: CVE-2006-3505

Available for: Mac OS X v10.3.9, Mac OS X Server v10.3.9, Mac OS X v10.4.7, Mac OS X Server v10.4.7

Impact: Visiting a malicious web site may lead to arbitrary code execution

Description: A maliciously-crafted HTML document could cause a previously deallocated object to be accessed. This may lead to an application crash or arbitrary code execution. This update addresses the issue by properly handling such documents. Credit to Jesse Ruderman of Mozilla Corporation for reporting this issue.
UserAgent: Mozilla/5.0 (Macintosh; U; PPC Mac OS X; en) AppleWebKit/418.8 (KHTML, like Gecko) Safari/419.3
User avatar
Antony
diamond member
diamond member
 
Posts: 14343
Joined: Tue 18 Jun, 2002 11:36 pm
Location: Sydney, Australia

Postby J-M » Wed 02 Aug, 2006 7:46 am

Secunia has security advisory SA21253 rated as Highly Critical at
http://secunia.com/advisories/21253/
now.
UserAgent: Mozilla/5.0 (Windows; U; Windows NT 5.0; fi; rv:1.8.0.5) Gecko/20060719 Firefox/1.5.0.5
User avatar
J-M
diamond member
diamond member
 
Posts: 815
Joined: Sun 25 Jul, 2004 9:16 am
Location: Helsinki, Finland

Postby baronharkonnen » Sun 06 Aug, 2006 11:57 pm

Shhhhhhhh!

You're ruining Apple's "We're more secure than Windows" rhetoric! 8-)
UserAgent: Mozilla/4.0 (compatible; MSIE 7.0; AOL 9.0; Windows NT 5.1; .NET CLR 1.1.4322)
baronharkonnen
izanbardprince
izanbardprince
 
Posts: 13
Joined: Sun 06 Aug, 2006 3:15 pm

Postby Pu7o » Mon 07 Aug, 2006 12:02 am

Hi izanbardprince. How's the weather? :lol:
UserAgent: Mozilla/5.0 (Macintosh; U; Intel Mac OS X; en-US; rv:1.8.0.6) Gecko/20060802 Donzilla/1.0.1 (WML/1.3)
User avatar
Pu7o
Macfox
Macfox
 
Posts: 2014
Joined: Thu 06 Jan, 2005 12:03 pm
Location: Portugal

Postby Antony » Thu 10 Aug, 2006 8:48 am

Apple released a new version of the 2006-004 Security Update on Wednesday. This version is specifically new Mac Pros running Mac OS X Server 10.4.7. The update includes security fixes for ImageIO and OpenSSH, and is available via Software Update and as a downloadable installer. More information about the security update, along with the installer, can be found at the Apple's web site.

Security Update 2006-004 is recommended for all Mac Pro systems running Mac OS X v10.4.7 (build 8K1079), and systems running Mac OS X Server v10.4.7 (Universal), and improves the security of the following components:

ImageIO
OpenSSH
UserAgent: Mozilla/5.0 (Macintosh; U; PPC Mac OS X; en) AppleWebKit/418.8 (KHTML, like Gecko) Safari/419.3
User avatar
Antony
diamond member
diamond member
 
Posts: 14343
Joined: Tue 18 Jun, 2002 11:36 pm
Location: Sydney, Australia


Return to Mac OS and Apple

Who is online

Registered users: Google [Bot], Majestic-12 [Bot]