View this article at: http://dev.macnn.com/articles/06/04/20/mac.os.x.security.holes
Thursday, Apr 20, 2006 3:15pm
Unfixed Mac OS X security h...
A security professional says he has been dissecting various Mac OS X applications, and has submitted a slew of security vulnerabilities to Apple's product security team. The vulnerabilities, which were reportedly submitted to Apple at the beginning of 2006, afflict Mac OS X 10.4.5, BOM ArchiveHelper, Safari 2.0.3, and Mac OS X 10.4.6. Apple recently released a firmware update for Intel Macs that addressed a security vulnerability in Java for Tiger, and offered Java Standard Edition 5.0 the following day, which also repaired a number of security issues. The company to date has chosen not to repair the vulnerabilities discovered by Security-Protocols.com, however, which has posted seven advisories for the weaknesses already discovered. "From what I have been told, they 'will be fixed in the next security release,'" Tom Ferris wrote, researcher for Security-Protocols.com. [corrected]