News
[Security]| Monday 24th April 2006 |
Tom Ferris discovered the vulnerabilities, detailed as follows in Secunia Advisory 19686: an error in the "BOMStackPop()" function in the BOMArchiveHelper when decompressing malformed ZIP archives; errors in the "KWQListIteratorImpl()", "drawText()", and "objc_msgSend_rtp()" functions in Safari when processing malformed HTML tags; an error in the "ReadBMP()" function when processing
ADVERTISEMENT |
|
The vulnerabilities have been reported in version 10.4.6 although earlier versions may also be affected.
Until Apple releases a fix, OS X users are advised to not visit untrusted websites or open ZIP archives or images originating from untrusted sources.
Ferris says that he reported the bugs to Apple at the beginning of the year and was told that they would be fixed in the next security update. Two updates have been released this year but the problems persist.
Submit to: Digg | Slashdot | Del.icio.us | Technorati
Choose from a variety of the UK's favourite safari holiday specialists. Great package deals, low-priced holidays, bargain breaks and all the latest travel offers.
Looking for Great-Value Safari Holidays?
Choose from a variety of the UK's favourite safari holiday specialists. Great package deals, low-priced holidays, bargain breaks and all the latest travel offers.






