Got a tip for us? Share it...

Apple Releases Mac OS X Security Update 2010-005 - Fixes OS X PDF Exploit

Apple has released a Security Update today for Mac OS X Server 10.5, Mac OS X 10.5.8, Mac OS X Server 10.6, Mac OS X 10.6.4 which addresses issues in the following software:

CFNetwork, ClamAV, CoreGraphics, libsecurity, PHP, Samba

Full changes are detailed on Apple's support site.

Most notably, the patch addresses a Core Graphics PDF exploit which apparently is the same security hole that was used in the JailbreakMe website for iOS.Impact: Opening a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution

Description: A heap buffer overflow exists in CoreGraphics' handling of PDF files. Opening a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution. This issue is addressed through improved bounds checking. Credit to Rodrigo Rubira Branco from the Check Point Vulnerability Discovery Team (VDT) for reporting this issue.
The update is recommended for all Mac OS X customers.

Top Rated Comments

(View all)

19 months ago
I love updating :)
Rating: 0 Positives / 0 Negatives
19 months ago
Downloaded fine, but took a long time to restart while updating. Everything normal once it did restart.
Rating: 0 Positives / 0 Negatives
19 months ago
Does it also update the Flash-Plugin to v.10.1? Can't evaluate it right now..
Rating: 0 Positives / 0 Negatives
19 months ago
It's just a Security update and not the implementation of new Features...
Rating: 0 Positives / 0 Negatives
19 months ago

Does it also update the Flash-Plugin to v.10.1? Can't evaluate it right now..


Probably not. Flash updates are usually done is maintenance releases.
Rating: 0 Positives / 0 Negatives
19 months ago
When are we getting Java Version 6.21 update? firefox tells me there is an update for it over 2 weeks now. But yeah I love updates especially security hopefully they can one day make flash better ****ing hate that crap even after blocking most flash stuff, sucks that you need flash for almost everything.:apple:
Rating: 0 Positives / 0 Negatives
19 months ago
More updates? Is there really that much wrong with 10.6?
Rating: 0 Positives / 0 Negatives
19 months ago

More updates? Is there really that much wrong with 10.6?


Standard security updates, it happens for all OS's, not just Windows.
Rating: 0 Positives / 0 Negatives
19 months ago
If this was an iPhone OS update it would be Page 1 material. It wasn't that long that a Mac OS X security update (of any kind) would have generated a mile long thread. I miss those days:(
Rating: 0 Positives / 0 Negatives
19 months ago

More updates? Is there really that much wrong with 10.6?



Yeah, I really wish they'd just leave it alone and stop improving it. :rolleyes:
Rating: 0 Positives / 0 Negatives

[ Read All Comments ]