Spyware Sucks
“There is no magic fairy dust protecting Macs" – Dai Zovi, author of “The Mac Hacker’s Handbook"

Running a Mac? You might want to get patched

September 30th 2006 in Uncategorized

http://docs.info.apple.com/article.html?artnum=304460

CFNetwork – Impact: CFNetwork clients such as Safari may allow unauthenticated SSL sites to appear as authenticated

Flash Player – Impact: Playing Flash content may lead to arbitrary code execution

ImageIO – Impact: Viewing a maliciously-crafted JPEG2000 image may lead to an application crash or arbitrary code execution

Kernel – Impact: Local users may be able to run arbitrary code with raised privileges

LoginWindow – Impact: After an unsuccessful attempt to log in to a network account, Kerberos tickets may be accessible to other local users

LoginWindow – Impact: Kerberos tickets may be accessible to other local users if Fast User Switching is enabled

LoginWindow – Impact: Network accounts may be able to bypass loginwindow service access controls

Preferences – Impact: After removing an account's Admin privileges, the account may still manage WebObjects applications

QuickDraw Manager – Impact: Opening a malicious PICT image with certain applications may lead to an application crash or arbitrary code execution

SASL – Impact: Remote attackers may be able to cause an IMAP server denial of service

WebCore – Impact: Viewing a maliciously-crafted web page may lead to arbitrary code execution

WorkGroup Manager – Impact: Accounts in a NetInfo parent that appear to use ShadowHash passwords may still use crypt

 


Comments are closed.

As noted in this blog post, McAfee's SiteAdvisor scored an extremely low 3 out of 200 (putting them in last place) in the 3sharp antiphishing tools test released just the other day.McAfee are now crying foul.  Shane Keats has posted to my blog, and to the IE blog, disputing the inclusion of McAfee's Site Advisor in the […]

Previous Entry

If you want to see *real* men play football, you can see the game online, for free, here (Broadband required):http://westcoasteagles.com.au/No wimpy body armour or helmets for these guys [:)]Interesting tidbit: The West Coast Eagles *lost* to Sydney in the lead up to the Grand Final a few weeks ago in a Preliminary Final and the […]

Next Entry

Archives