On mySimon: Magno Wooden AM/FM Radios
BNET Business Network:
BNET
TechRepublic
ZDNet

September 24th, 2008

Apple plugs gaping holes in Java for Mac

Posted by Ryan Naraine @ 5:29 pm

Categories: Adobe, Apple, Arbitrary Code Execution, Browsers, Data theft, Denial of Service (DoS), Exploit code, Flash, Java, Malware, Open source, Patch Watch, Pen testing, Responsible disclosure, Viruses and Worms, Vulnerability research, Zero-day attacks

Tags: Apple Macintosh, Apple Inc., Programming Languages, Apple Mac OS X, Java, Desktops, Software Development, Software/Web Development, Operating Systems, Software

Apple plugs gaping holes in Java for Mac Apple today released Java for Mac OS X 10.5 Update 2 with patches for a total of 25 documented security flaws that could expose Mac users to malicious code execution attacks.

Two of the 25 flaws are specific to Apple and could be exploited to launch drive-by attacks if a Mac user is tricked into visiting a maliciously rigged Web page.

The two bugs affect Mac OS X v10.5.4 and Mac OS X Server v10.5.4 and address:

  • CVE-2008-3638: The Java plug-in does not block applets from launching file:// URLs. Visiting a website containing a maliciously crafted Java applet may allow a remote attacker to launch local files, which may lead to arbitrary code execution. This update addresses the issue through improved handling of URLs. This is an Apple-specific issue. Credit to Nitesh Dhanjani and Billy Rios for reporting this issue.
  • CVE-2008-3637: An error checking issue leading to the use of an uninitialized variable exists in the Hash-based Message Authentication Code (HMAC) provider used for generating MD5 and SHA-1 hashes. Visiting a website containing a maliciously crafted Java applet may lead to arbitrary code execution. This update addresses the issue through improved error handling. This is an Apple-specific issue. Credit to Radim Marek for reporting this issue.

The mega update also addresses multiple serious vulnerabilities in Java 1.4.2_16, Java 1.5.0_13 and Java 1.6.0_05.

Ryan NaraineRyan Naraine is a journalist and security evangelist at Kaspersky Lab. He manages Threatpost.com, a security news portal. Here is Ryan's full profile and disclosure of his industry affiliations.


Email Ryan Naraine

For daily updates on Ryan's activities, follow him on Twitter.

Subscribe to Zero Day via Email alerts or RSS.

  • Talkback
  • Most Recent of 4 Talkback(s)
RE: Apple plugs gaping holes in Java for Mac
Huh.... I guess that means Windows IS a freakin' canyon... (Read the rest)
Posted by: Tom9black Posted on: 02/14/09 You are currently: a Guest | | Terms of Use
"Gaping" Holes...  wolftalamasca | 09/26/08
RE: Apple plugs gaping holes in Java for Mac  Jkirk3279 | 09/26/08
Apple IS a gaping hole  Crestview | 09/27/08
RE: Apple plugs gaping holes in Java for Mac  Tom9black | 02/14/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
Click Here

Recent Entries

advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

SmartPlanet

Click Here