[ISN] Apple Mac Security Update Plugs 13 Vulnerabilities

From: InfoSec News <alerts_at_private>
Date: Wed, 25 Aug 2010 00:37:23 -0500 (CDT)
http://www.eweek.com/c/a/Security/Apple-Mac-Security-Update-Plugs-13-Vulnerabilities-718935/

By Brian Prince
eWEEK.com
2010-08-24

Apple released a security update for Mac OS X that patches 13 
vulnerabilities.

The release fixes issues in several components, including CoreGraphics 
and Apple Type Services. Several of the vulnerabilities are buffer 
overflows, and can be exploited to execute arbitrary code.

According to the Apple advisory, the Apple Type Services (ATS) bug can 
be triggered by viewing or downloading a document containing a malicious 
embedded font. If exploited, hackers could use it to run code. Apple 
said it fixed the issue through improved bounds checking.

[...]


_______________________________________________________      
Subscribe to InfoSec News - www.infosecnews.org
http://www.infosecnews.org/mailman/listinfo/isn
Received on Tue Aug 24 2010 - 22:37:23 PDT

This archive was generated by hypermail 2.2.0 : Tue Aug 24 2010 - 22:42:42 PDT