[cfgeeks] [Fwd: US-CERT Cyber Security Alert SA07-072A -- Apple Updates for Multiple Vulnerabilities]

Kevin P. Inscoe kevin at inscoe.org
Wed Mar 14 09:10:31 EDT 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1



- -------- Original Message --------
Subject: US-CERT Cyber Security Alert SA07-072A -- Apple Updates for
Multiple Vulnerabilities
Date: Tue, 13 Mar 2007 21:04:32 -0400
From: US-CERT Alerts <alerts at us-cert.gov>
Organization: US-CERT - +1 202-205-5266
To: alerts at us-cert.gov


                        National Cyber Alert System

                       Cyber Security Alert SA07-072A


Apple Updates for Multiple Vulnerabilities

   Original release date: March 13, 2007
   Last revised: --
   Source: US-CERT


Systems Affected

     * Apple Mac OS X version 10.3.x (Panther) and version 10.4.x (Tiger)

   These vulnerabilities affect both Intel-based and PowerPC-based Apple
   systems.


Overview

     Apple Mac OS X is affected by multiple vulnerabilities. Apple has
     released Security Update 2007-003 to address these vulnerabilities,
     the most serious of which may allow a remote attacker to place and
     run malicious programs on your computer.


Solution

Install an Update

     Install Apple Security Update 2007-003 through Apple Update.

     OS X 10.4 users should upgrade to 10.4.9 to obtain the security
     fixes in Apple Security Update 2007-003.


Description

     Apple Mac OS X is affected by multiple vulnerabilities. Some of
     these vulnerabilities could allow an attacker to run malicious
     programs on your computer.

     For more technical information, see US-CERT Technical Alert
     TA07-072A.


References

     * US-CERT Technical Cyber Security Alert TA07-072A -
       <http://www.us-cert.gov/cas/techalerts/TA07-072A.html>

     * Vulnerability notes for Apple Security Update 2007-003 -
       <http://www.kb.cert.org/vuls/byid?searchview&query=apple_2007-003>

     * About the security content of Mac OS X 10.4.9 and Security Update
       2007-003 - <http://docs.info.apple.com/article.html?artnum=305214>

     * Mac OS X: Updating your software -
       <http://docs.info.apple.com/article.html?artnum=106704>

 ____________________________________________________________________

   The most recent version of this document can be found at:

     <http://www.us-cert.gov/cas/alerts/SA07-072A.html>
 ____________________________________________________________________

   Feedback can be directed to US-CERT Technical Staff. Please send
   email to <cert at cert.org> with "SA07-072A Feedback VU#449440" in the
   subject.
 ____________________________________________________________________

   For instructions on subscribing to or unsubscribing from this
   mailing list, visit <http://www.us-cert.gov/cas/signup.html>.
 ____________________________________________________________________

   Produced 2007 by US-CERT, a government organization.

   Terms of use:

     <http://www.us-cert.gov/legal.html>
 ____________________________________________________________________


Revision History

   March 13, 2007: Initial release


- --
Kevin P. Inscoe                    Amateur Radio Call Sign: KE3VIN/AG
Deltona, FL 32738                                28.9497N by 81.1952W
kevin [at] inscoe [dot] org                    http://kevininscoe.com
GPG 0x61288D53













-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFF9/RGM3kNQ2EojVMRAslsAJ9YQkHJawBNSIDN3VePEH3yc//MLwCeI66Z
Q9/Xq771+lcJ2g8PtE7HjPE=
=Akgn
-----END PGP SIGNATURE-----


More information about the cfgeeks mailing list