Apple Mac OS X Security Update Fixes Multiple Vulnerabilities ( 14 May 2009 )
RISK: Medium Risk
Multiple vulnerabilities have been identified in Apple Mac OS X, which could be exploited by remote or local attackers to disclose sensitive information, bypass security restrictions, cause a denial of service or compromise an affected system. These issues are caused by input validation errors, buffer overflows, implementation issues, memory corruptions, integer overflow and underflows, memory leaks, null pointer dereferences, out-of-bounds memory accesses, unchecked indexes, and incomplete error checks in Apache, ATS, BIND, CFNetwork, CoreGraphics, Cscope, CUPS, Disk Images, enscript, Flash Player plug-in, Help Viewer, iChat, ICU, IPSec, Kerberos, Kernel, Launch Services, libxml, Net-SNMP, Network Time, Networking, OpenSSL, PHP, QuickDraw Manager, ruby, Safari, Spotlight, system_cmds, telnet, WebKit, and X11.
System / Technologies affected
- Mac OS X version 10.4.11 and prior
- Mac OS X Server version 10.4.11 and prior
- Mac OS X versions 10.5 through v10.5.6
- Mac OS X Server versions 10.5 through v10.5.6
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
Apply Apple Security Update 2009-0002 :
http://www.apple.com/support/downloads/
Vulnerability Identifier
- CVE-2004-1184
- CVE-2004-1185
- CVE-2004-1186
- CVE-2006-0747
- CVE-2007-2754
- CVE-2008-0456
- CVE-2008-1382
- CVE-2008-1517
- CVE-2008-2371
- CVE-2008-2383
- CVE-2008-2665
- CVE-2008-2666
- CVE-2008-2829
- CVE-2008-2939
- CVE-2008-3443
- CVE-2008-3529
- CVE-2008-3530
- CVE-2008-3651
- CVE-2008-3652
- CVE-2008-3655
- CVE-2008-3656
- CVE-2008-3657
- CVE-2008-3658
- CVE-2008-3659
- CVE-2008-3660
- CVE-2008-3790
- CVE-2008-3863
- CVE-2008-4309
- CVE-2008-5077
- CVE-2008-5557
- CVE-2009-0010
- CVE-2009-0021
- CVE-2009-0025
- CVE-2009-0040
- CVE-2009-0114
- CVE-2009-0145
- CVE-2009-0146
- CVE-2009-0147
- CVE-2009-0148
- CVE-2009-0149
- CVE-2009-0150
- CVE-2009-0152
- CVE-2009-0153
- CVE-2009-0154
- CVE-2009-0155
- CVE-2009-0156
- CVE-2009-0157
- CVE-2009-0158
- CVE-2009-0159
- CVE-2009-0160
- CVE-2009-0161
- CVE-2009-0162
- CVE-2009-0164
- CVE-2009-0165
- CVE-2009-0519
- CVE-2009-0520
- CVE-2009-0844
- CVE-2009-0845
- CVE-2009-0846
- CVE-2009-0847
- CVE-2009-0942
- CVE-2009-0943
- CVE-2009-0944
- CVE-2009-0945
- CVE-2009-0946
Source
Related Link
Share with