Results 1 to 2 of 2

Thread: another MAC issue

  1. #1
    Bad address email on file QDO1's Avatar
    Join Date
    Sep 2005
    Location
    UK
    Occupation
    Dispensing Optician
    Posts
    1,961

    another MAC issue

    Unpatched Mac OS X hole poses critical risk

    By John Leyden
    Published Wednesday 22nd February 2006 13:57 GMT
    Security researchers have discovered a vulnerability (http://secunia.com/advisories/18963) in Mac OS X that creates a means for hackers to compromise vulnerable systems. The critical security flaw is unpatched but workarounds have been issued.

    The flaw stems from errors in the processing of metadata file association meta data in ZIP archives. By renamed "safe file" extensions stored in ZIP archives, hackers could trick users into executing malicious shell scripts. The security bug might also be used to attack Apple Safari browser users by creating a means for attackers to automatically run malign code when a Safari user visits a malicious-constructed website, an even more potent exploit scenario.

    The vulnerability has been confirmed on a fully patched system with Safari 2.0.3 and Mac OS X 10.4.5. Early versions might also be affected. Security notification firm Secunia has published a test here (http://secunia.com/mac_os_x_command_...rability_test). It advises users to protect themselves against exploit by disabling the "Open safe files after downloading" option in Safari. Mac users should also avoid opening files in Zip archives that originate from untrusted sources.

    "This is yet another example of the continuing spread of malicious code onto other platforms," said Alfred Huger, senior director of engineering at Symantec Security Response. "While there is no known exploit at this time, users are encouraged to turn off the 'Open safe files after downloading option' in their Safari browsers and watch for further information from Apple."

    Discovery of the vulnerability follows last week's discovery of two low-level worms targeting Mac OS X: Leap-A and Inqtana-A

  2. #2
    Master OptiBoarder Snitgirl's Avatar
    Join Date
    May 2005
    Location
    North Vancouver, British Columbia, Canada
    Occupation
    Dispensing Optician
    Posts
    1,764
    Thanks for the post KING :D I am strickly a Mac User... Good to know..

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Issue with Uncut Lab
    By culland in forum General Optics and Eyecare Discussion Forum
    Replies: 20
    Last Post: 02-08-2006, 01:36 PM
  2. VirtualOptician: Project for student/hobbyist with PC or Mac
    By rinselberg in forum General Optics and Eyecare Discussion Forum
    Replies: 23
    Last Post: 02-05-2006, 02:46 PM
  3. optometric software for mac
    By cosprings2000 in forum General Optics and Eyecare Discussion Forum
    Replies: 2
    Last Post: 02-12-2005, 10:23 PM
  4. PC or Mac
    By Joann Raytar in forum Computer and Software Help
    Replies: 4
    Last Post: 10-05-2004, 01:41 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •