Categorized | Security

Apple Releases Massive OS X Security Update

Thumbnail image for apple.jpgApple released today an update to OS X of possibly unprecedented proportions, addressing 131 separate vulnerabilities, one over 2 years old.

55 of the vulnerabilities, including the one first revealed in October 2008, were for the Flash Player plug-in, proving once more that it’s a mistake to wait for Apple for such updates.

The age of some of the vulnerabilities is staggering. In addition to the one from 2008, 7 were first revealed in 2009. A much more recent one (though far from the most recent), CVE-2010-1797, was fixed 3 months ago in iOS, leaving OS X users badly exposed in the meantime.

The update mixes fixes to Apple code with fixes to common UNIX software such as X11, PHP and OpenSSL. For instance CVE-2009-0796, found in February of 2009, is a cross-site scripting bug in the mod_perl Apache module.

The update is designated Security Update 2010-007 for OS X 10.5 and brings 10.6 up to 10.6.5.

View full post on Security Watch

Related Posts

Comments are closed.

Security Status

Beware Facebook "Timeline" scams http://t.co/W5EW0cVv
5 months ago
Nigerian government (unknowingly) hosts phishing website http://t.co/uQd42ENw
5 months ago
PCMag Awards McAfee All Access its Editors’ Choice: SANTA CLARA, Calif.--(BUSINESS WIRE)--McAfee today announced... http://t.co/FakV7Vd8
5 months ago
RT @mikko: I hadn't noticed Google Maps has added 3D models of buildings. Here's a (very accurate) view of F-Secure HQ in Helsinki http://t.co/IKfAZlak
5 months ago
North Koreans aren't known for their online presence. But others may be lured into clicking Kim Jong-Il 'videos' too http://t.co/yQOon6YT
5 months ago
How to Protect Your Professional Reputation on Facebook Timeline http://t.co/I4bcR2VN
5 months ago
This is pretty impressive from @Softpedia: Facebook scans 2 trillion link clicks and blocks 220 million posts each day http://t.co/vKsn9gNl
5 months ago
Need for integrated approach to security in industrial control systems - http://t.co/tPBCNOow with @PikeResearch
5 months ago
Some free-based music we play at work http://t.co/xu5agZfc
5 months ago
Japan’s cyber defense weapon: a virus. It includes quotes by @Luis_Corrons via @InfosecurityMag
5 months ago