I think that .DMG files are no longer considered "safe" since the previous vulnerability.
"Highly critical" Mac OS X kernel hole unearthed
Related?