toggle

AAPL Stock: 127.07 ( -0.53 )

Printed from http://www.macnn.com

Apple security update fixes QuickTime flaw

updated 04:15 pm EST, Tue December 19, 2006

Security Update 2006-008

Apple today released Security Update 2006-008, which provides a fix for security issue in QuickTime for Java and Quartz Composer, an underlying graphics display software component of Apple's Mac OS X. The update, available now via the Software Update and the Web, is available for Mac OS X 10.4.8 Tiger systems only (both client and Server). The company said that the flaw could malicious websites to access private information without the users' consent or knowledge: "Java applets may use QuickTime for Java to obtain the images rendered on screen by embedded QuickTime objects and upload them to the originating web site. When this facility is used in conjunction with Quartz Composer, it becomes possible to capture images that may contain local information," Apple wrote in its security update. The update addresses the issue by disallowing Quartz Composer compositions in unsigned Java applets, but allow Quartz Composer compositions continue to function locally. The company said that applications and signed Java applets that utilize QuickTime and QuickTime for Java are unaffected. The same Mac OS X Tiger security update for PowerPC-based Macs is also separately available.




by MacNN Staff

POST TOOLS:

TAGS :

toggle

Comments

Comments are closed.

toggle

Network Headlines

toggle

Most Popular

Advertisement

Recent Reviews

DiVoom VoomBox Party

The VoomBox Party by DiVoom is a 2.1 speaker system which can connect to devices via Bluetooth 4.0 or NFC. It's a bit larger than a b ...

Neurio Intelligent Home Monitor

The recently released Neurio Intelligent Home Monitor is a piece of hardware that, when integrated into a home's breaker box, monitor ...

Apple 13-inch MacBook Pro (Early 2015)

Although the new darling of the Apple MacBook line up is the all-new MacBook, Apple has given its popular 13-inch MacBook Pro with Ret ...

toggle

Most Commented