CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
spacer spacer
image Vulnerabilities: Mac OS X, Windows Security Gaps Found image
Security Hole
Mac OS X, Windows Security Gaps Found
By Matt Hicks
November 26, 2003

On Wednesday, William Carrel posted an advisory warning of a malicious DHCP response that can grant root access for Mac OS X. The vulnerability affects the desktop and server versions of Mac OS X 10.2, known as Jaguar, as well as Mac OS X 10.3, known as Panther, he wrote.

Carrel noted that Apple Computer Inc. currently has no patch for the hole but may be looking to provide an update in December. Carrel wrote that he had notified Apple of the security issue before Panther and a November security update were released.

Apple officials could not be immediately reached for comment.

Separately, Copenhagen, Denmark-based security company Secunia issued a security advisory late Tuesday about five security vulnerabilities in Internet Explorer 6.0 and possibly in earlier versions of the browser as well. Together, they can be exploited to compromise a user's system the advisory warns.

Secunia suggested that users disable active scripting or use another browser to avoid the vulnerabilities.

Microsoft officials said that they were investigating the issue but have not been made aware of any exploits or customer impacts of the reported vulnerabilities.

Upon completion of this investigation, Microsoft will take the appropriate action to protect our customers, which may include providing a fix through our monthly patch release process or an out-of-cycle patch, depending on customer needs, said Stephen Toulouse, security program manager of Microsoft's Security Response Center, in a statement.

In addition, Secunia late last week also found vulnerabilities in the Opera browser, Version 7.22 and earlier, that can cause a buffer overflow. Opera this week released an update to its browser, Opera 7.23, that fixes the holes.


Source: eWeek
Posted on Thursday, 27 November 2003 @ 06:15:03 UTC by phoenix22 (1096 reads)
[ Trackback ]
image

"Vulnerabilities: Mac OS X, Windows Security Gaps Found" | Login/Create an Account | 0 comments
Threshold
The comments are owned by the poster. We aren't responsible for their content.

No Comments Allowed for Anonymous, please register
 
Login
spacer
Nickname

Password

Security Code: Type Security Code: Usage signifies AUP acceptance
· New User? · Click here to create a registered account.
block bottom
Related Links
spacer
· del.icio.us!
· digg it!
· reddit!
· TrackBack (0)
· Microsoft
· Microsoft
· HotScripts
· Apple
· W3 Consortium
· More about Security Hole
· News by phoenix22


Most read story about Security Hole:
Windows Media Player, Spyware and Trojan

block bottom
Article Rating
spacer
Average Score: 0
Votes: 0

Please take a second and vote for this article:

Bad
Regular
Good
Very Good
Excellent


block bottom
Options
spacer

Printer Friendly Page  Printer Friendly Page

block bottom
spacer spacer