Apple releases bumper patch batch
DNS cache poisoning flaw finally fixed
16th September 2008 10:25 GMT
Apple has published a major security patch. Mac OS X 10.5.5 is the sixth substantial security update from the company this year. The patch cycle also includes fixes for version 10.4 of Apple's software.
Both updates mend DNS security holes in older versions of BIND previously bundled with Apple's software. There are also updates for Directory Services, kernel, OpenSSH remote access software, QuickDraw Manager and more.
The flaws in ImageIO, QuickDraw Manager, VideoConference and ATS could lend themselves to hostile code injection. Meanwhile security bugs in libresolv could allow DNS cache poisoning, Apple's security notice explains.
Security watchers - such as the Internet Storm Centre - recommend the prompt patching of Apple systems. The updates follow fixes for iTunes and QuickTime application software released last week. ®
Register Hardware » News » Mac


Apple iMac All-In-One Desktop (3.06GHz Intel Core 2 Duo, 4GB DDR2, 1TB, DVD+-RW DL, Mac OS X v10.5 Snow Leopard, 27" LCD)
Apple 13.3" MacBook Pro Notebook (2.26GHz Intel Core 2 Duo Mobile, 2GB DDR3, 160GB HDD, DVD±RW DL, Mac OS X v10.5 Leopard, 13.3" LCD)
Apple MacBook Notebook (2.4GHz Intel Core 2 Duo Mobile, 2GB DDR3, 250GB HDD, DVD±RW DL, Mac OS X v10.6 Snow Leopard, 13.3" LCD)
Apple 13.3" MacBook Notebook (2.13GHz Intel Core 2 Duo Mobile, 2GB DDR2, 160GB HDD, DVD±RW DL, Mac OS X v10.5 Leopard, 13.3" LCD)
Apple Magic Wireless Laser Mouse (Bluetooth)