Security Update 2010-003 update available

Security Update Box

Apple has released the first Security Update 2010-003 for Mac OS X v10.5.8, Mac OS X Server v10.5.8, Mac OS X v10.6.3, Mac OS X Server v10.6.3. This update address vulnerabilities including fixing zero day bugs. Apple said:

Available for: Mac OS X v10.5.8, Mac OS X Server v10.5.8, Mac OS X v10.6.3, Mac OS X Server v10.6.3

Impact: Viewing or downloading a document containing a maliciously crafted embedded font may lead to arbitrary code execution.

Description: An unchecked index issue exists in Apple Type Services' handling of embedded fonts. Viewing or downloading a document containing a maliciously crafted embedded font may lead to arbitrary code execution. This issue is addressed through improved index checking. Credit to Charlie Miller working with TippingPoint's Zero Day Initiative for reporting this issue.

For details about this security update, please refer to About Security Update 2010-003 page.

Security Update 2010-003 can be downloaded from Apple Software Update under Apple menu or from Apple's Support Download site.

Join our discussion - Seucrity Update 2010-003 addresses zero-day bug SillyDog701 Message Centre


Posted by Antony at April 15, 2010 6:54 AM

>> more MacCentre701 April 2010 reports.