Apple releases a boat load of patches

by certifiedbug on November 16, 2007

in Security

November 14-15, 2007. Fixes for at least 54 security bugs.
Apple also patched a security hole in Apple’s version of Adobe’s Flash Player, offered by Adobe as an update since July 2007.

Security Updates
15 Nov 2007
Mac OS X 10.5.1 Mac OS X 10.5, Mac OS X Server version 10.5
14 Nov 2007
Mac OS X 10.4.11 and Security Update 2007-008 Mac OS X 10.3.9 (for Security Update 2007-008), Mac OS X 10.4 or later (for Mac OS X 10.4.11 Update)
14 Nov 2007
Safari 3 Beta Update 3.0.4 Windows XP / Vista

About the security content of Safari 3 Beta Update 3.0.4

Security appears to be taking a front seat at Apple, which is good news for Mac users, even if many believe their systems are invincible. ;-)

The enormous set of patches for Mac OS X, Safari and the Leopard firewall came shortly after Microsoft’s November security release.

The Microsoft Security Response Center (MSRC)
Tuesday, November 13, 2007

Two new bulletins:

  • MS07-061: This update addresses a vulnerability in Windows URI handling, which could allow remote code execution and has a maximum severity of Critical.
  • MS07-062: This update addresses a vulnerability in DNS which could allow spoofing and has a maximum severity of Important

One re-released bulletin:

  • MS07-049: This update addresses a vulnerability in Virtual PC and Virtual Server and could allow elevation of privilege. This is a change to the installer code only, to address some limited installation problems that we have seen. There’s no change to the update binaries, so if you have already successfully installed this update, you do not need to reinstall it. Please refer to the bulletin revision notes for more detail.

{ 0 comments… add one now }

Leave a Comment

You can use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

Previous post: Holiday Shopping On-Line

Next post: Warning about Symantec detections