Posted on 05/26/2004 2:40:27 AM PDT by Leroy S. Mort
A security hole still threatens Mac OS X users after a patch issued by Apple Computer last week failed to fix the underlying problem, security experts said on Tuesday.
The security issue could allow an attacker to transfer and then run a malicious program on a Mac, if the Mac's user can be enticed to go to a fake Web page on which the program has been placed.
"This, in my mind, is the first critical vulnerability on OS X," said Richard Forno, a security researcher and the former chief of security for domain registrar Network Solutions. "Downloading the patch and seeing that there were some things that were fixed and some things that weren't, tells me that there is more work to be done."
Two other software companies have confirmed the issue. Security information company Secunia raised its rating of the potential risk to "extremely critical" after determining that the vulnerability is more widespread than Apple apparently first thought. Independent software maker Unsanity released a tool this week to work around the problem and put out a white paper describing the issue.
Apple would not comment.
(Excerpt) Read more at zdnet.com.com ...
Will Steve Jobs say "iApologize"? Stay tuned.
iScrewedUp.
Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.