[cfgeeks] [Fwd: US-CERT Cyber Security Alert SA07-072A -- Apple
Updates for Multiple Vulnerabilities]
Kevin P. Inscoe
kevin at inscoe.org
Wed Mar 14 09:10:31 EDT 2007
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
- -------- Original Message --------
Subject: US-CERT Cyber Security Alert SA07-072A -- Apple Updates for
Multiple Vulnerabilities
Date: Tue, 13 Mar 2007 21:04:32 -0400
From: US-CERT Alerts <alerts at us-cert.gov>
Organization: US-CERT - +1 202-205-5266
To: alerts at us-cert.gov
National Cyber Alert System
Cyber Security Alert SA07-072A
Apple Updates for Multiple Vulnerabilities
Original release date: March 13, 2007
Last revised: --
Source: US-CERT
Systems Affected
* Apple Mac OS X version 10.3.x (Panther) and version 10.4.x (Tiger)
These vulnerabilities affect both Intel-based and PowerPC-based Apple
systems.
Overview
Apple Mac OS X is affected by multiple vulnerabilities. Apple has
released Security Update 2007-003 to address these vulnerabilities,
the most serious of which may allow a remote attacker to place and
run malicious programs on your computer.
Solution
Install an Update
Install Apple Security Update 2007-003 through Apple Update.
OS X 10.4 users should upgrade to 10.4.9 to obtain the security
fixes in Apple Security Update 2007-003.
Description
Apple Mac OS X is affected by multiple vulnerabilities. Some of
these vulnerabilities could allow an attacker to run malicious
programs on your computer.
For more technical information, see US-CERT Technical Alert
TA07-072A.
References
* US-CERT Technical Cyber Security Alert TA07-072A -
<http://www.us-cert.gov/cas/techalerts/TA07-072A.html>
* Vulnerability notes for Apple Security Update 2007-003 -
<http://www.kb.cert.org/vuls/byid?searchview&query=apple_2007-003>
* About the security content of Mac OS X 10.4.9 and Security Update
2007-003 - <http://docs.info.apple.com/article.html?artnum=305214>
* Mac OS X: Updating your software -
<http://docs.info.apple.com/article.html?artnum=106704>
____________________________________________________________________
The most recent version of this document can be found at:
<http://www.us-cert.gov/cas/alerts/SA07-072A.html>
____________________________________________________________________
Feedback can be directed to US-CERT Technical Staff. Please send
email to <cert at cert.org> with "SA07-072A Feedback VU#449440" in the
subject.
____________________________________________________________________
For instructions on subscribing to or unsubscribing from this
mailing list, visit <http://www.us-cert.gov/cas/signup.html>.
____________________________________________________________________
Produced 2007 by US-CERT, a government organization.
Terms of use:
<http://www.us-cert.gov/legal.html>
____________________________________________________________________
Revision History
March 13, 2007: Initial release
- --
Kevin P. Inscoe Amateur Radio Call Sign: KE3VIN/AG
Deltona, FL 32738 28.9497N by 81.1952W
kevin [at] inscoe [dot] org http://kevininscoe.com
GPG 0x61288D53
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
iD8DBQFF9/RGM3kNQ2EojVMRAslsAJ9YQkHJawBNSIDN3VePEH3yc//MLwCeI66Z
Q9/Xq771+lcJ2g8PtE7HjPE=
=Akgn
-----END PGP SIGNATURE-----
More information about the cfgeeks
mailing list