Posted by hard-mac on August 14, 2010 – 9:48 am
Apple has released a security update their Windows version of QuickTime 7.6.7 fixing one vulnerability. According to Apple this issue does not affect Mac OS X systems.
QuickTime 7.6.7 may be obtained from the Software Update application, or from the QuickTime Downloads site: http://www.apple.com/quicktime/download/
Posted by hard-mac on November 9, 2009 – 6:56 pm
Along with this Snow Leopard update to 10.6.2, Apple also released a security update for OS X 10.5.8 client and server. The update includes numerous security updates and some feature enhancements, Apple also pulled support for Intel Atom processor which breaks Hackintosh Netbooks.
The update is available via Software Update and Apple’s support downloads site.
Posted by hard-mac on July 8, 2009 – 10:49 pm
Apple updated Safari to 4.02 fixing two critical vulnerabilities.
About the security content of Safari 4.0.2 – http://support.apple.com/kb/HT3666
* CVE-2009-1724: An issue in WebKit’s handling of the parent and top objects may result in a cross-site scripting attack when visiting a maliciously crafted website. This update addresses the issue through improved handling of parent and top objects.
* CVE-2009-1725: A memory corruption issue exists in WebKit’s handling of numeric character references. Visiting a maliciously crafted website may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue through improved handling of numeric character references.
Posted by hard-mac on June 12, 2009 – 9:16 am
Center for Internet Security Benchmark papers