MaldivianDigital® :: Forum

Go Back   MaldivianDigital® :: Forum > Site Related > Announcements & News

Announcements & News For announcements of what's happening with the Maldiviandigital.com forum and important news.

 
 
LinkBack Thread Tools Display Modes
Prev Previous Post   Next Post Next
  #1  
Old 30-05-2008, 08:15 PM
ahmedvisham's Avatar
AhmedVisham®
 
Join Date: May 2007
Location: where do you want me to live????
Posts: 2,136
Thanks: 2,158
Thanked 2,474 Times in 805 Posts
Rep Power: 145
ahmedvisham has a reputation beyond repute ahmedvisham has a reputation beyond repute ahmedvisham has a reputation beyond repute ahmedvisham has a reputation beyond repute ahmedvisham has a reputation beyond repute ahmedvisham has a reputation beyond repute ahmedvisham has a reputation beyond repute ahmedvisham has a reputation beyond repute ahmedvisham has a reputation beyond repute ahmedvisham has a reputation beyond repute ahmedvisham has a reputation beyond repute
hot Apple updates Leopard

More than three months after it last updated Mac OS X, Apple released 10.5.3, an upgrade for its Leopard operating system that boasts nearly 70 stability, compatibility and security improvements and fixes.

Apple did not include patches for several iCal vulnerabilities in the update, however.

Mac OS X 10.5.3, the third upgrade to Leopard since Apple launched it back in October 2007, addresses issues in several components and bundled applications, ranging from the Address Book and Automator to Time Machine and VoiceOver.

Apple also listed a baker's dozen under a "General" category that included a fix for hard drives that wouldn't show in the Finder; an improvement in Spotlight, the OS's built-in search tool, for searches done on AFP volumes; and a patch for stuttering audio and video playback from certain USB-based hardware.

AirPort, Apple's label for its wireless technology, got a pair of fixes: one to improve wireless reliability in general, the other to boost reliability when used with the company's relatively new Time Capsule router-cum-backup-device that debuted earlier this year.

iChat, the Mac OS's bundled instant messaging and video conferencing application, received five fixes; Mail, Apple's own email client, got 10; and Time Machine was the target of seven.

The Time Machine fixes, said Apple, resolve issues when backing up a notebook running on battery power, and address a reliability problem some users have encountered when restoring from a Time Machine backup.

Apple also tucked eight fixes for iCal, its personal scheduling program, into the 10.5.3 update, but did not patch the three security vulnerabilities disclosed a week ago by Core Security Technologies.

The three iCal bugs, which were reported to Apple in January 2008, were revealed last Wednesday by Core after it had repeatedly been asked by Apple to delay publishing its findings. Core decided to unveil the vulnerabilities after Apple again postponed its patches.

"No vendor moves as fast as the vulnerability researcher wants them to," said Andrew Storms, director of security operations at nCircle Network Security.

Storms refused to blame either side. "It generally takes a major vendor, like Microsoft or Apple, about six to eight months to get a patch released," he said. "But Core had every right to push the vendor into delivering the patch."

In a follow-on interview last week, Ivan Arce, Core Technologies' chief technology officer, said that the current version of iCal is vulnerable to the flaws, one of which he considered critical. But his team had not found evidence of any in-the-wild attacks trying to trigger the iCal vulnerabilities.

"It wouldn't take a whole lot of reverse engineering to figure this out," Storms said, referring to the ease with which attackers would be able to put two and two together from Core's disclosures. "It's a valid concern," he added. "The moment you click on a malformed .ics file, you're done."

Apple has not responded to emails asking when it would patch the iCal vulnerabilities.

Mac OS X 10.5.3 can be downloaded manually from the Apple site, or retrieved and installed using Mac OS X's integrated update feature.
__________________



Reply With Quote
The Following User Says Thank You to ahmedvisham For This Useful Post:
AngelEye (04-06-2008)
To Advertise Us
 

Bookmarks


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Antimalware group scolds Apple over Safari 'carpet bomb' ahmedvisham Announcements & News 0 26-05-2008 08:10 PM
Once-fixed bug pops up again in Leopard ahmedvisham Announcements & News 0 26-11-2007 01:18 AM
Analyst: Apple Gets Healthy Share of AT&T Contracts ahmedvisham Announcements & News 0 21-07-2007 02:23 AM


All times are GMT +6. The time now is 03:30 AM.


All posts and attachments are the responsibilities of their owners and not of this site|Ad Management by