Warning this article may contain opinions of the author that you and iTWire don't agree with.
Visit the last page to have your say in our forum.

No. 1 Story

Telstra adds one million mobile services, but Sensis plummets

Telstra has revealed the addition of almost one million new mobile services in the six months to December 2011, but Sensis revenues plummeted 24 percent in 12 months.

read more

Mac OS X 10.5.6 - this time it's real

Opinion and Analysis

As for the security aspects of 10.5.6 and Security Update 2008-008 for Tiger, several of the issues concern improved error checking to avoid problems that could be caused by maliciously crafted files.

Such file types include PDF (Leopard only), CPIO archives, image files generally, Flash content, and ISO images.

There's also a cookie-related issue in Safari that could allow the disclosure of user credentials.

Download validation (Leopard only) has been improved so that files with executable permissions and no specific application association are marked as potentially unsafe.

Changes have been made to various system calls and APIs to avoid privilege escalation, denial of service attacks, and arbitrary code execution. Leopard Server's Podcast Producer has been changed to prevent remote attacks via its administrative functions.

One unusual correction concerns Leopard's Managed Client feature. On systems that lack built-in Ethernet (and the only recent Mac that fits that description is the MacBook Air) certain screen saver settings are not correctly applied, including the lock.

Mac OS X 10.5.6 Update and Security Update 2008-008 are available via Software Update or from Apple's Support Downloads page.

File sizes range from 72M for the PowerPC version of Security Update 2008-008 to 883M for the 10.5.6 Server combo update.

If your 10.5.5 system is otherwise up to date, Software Update may be able to fetch a smaller version of the 10.5.6 updater.

Loading comments ...



- sponsored feature -

The Death of Traditional BI: What’s Next?

How to Make Business Discovery Work for Your Business IP PABX BUYING GUIDE

Business Discovery takes its cues from consumer apps. Like Google, it encourages us- ers to hunt for and explore data without worrying about or even noticing the underly- ing technology. Their entire experience is working within an intuitive interface to get real-time, self-service results with only minimal training. ...more