[FYI] Security Update 2009-004

image [...] Apple veröffentlichte soeben das Security Update 2009-004 für Mac OS X 10.5.8 und 10.4.11 (Intel, PPC). Es schließt eine Sicherheitslücke in der DNS-Software BIND, die (auch) in Mac OS X steckt: "A logic issue in the handling of dynamic DNS update messages may cause an assertion to be triggered. By sending a maliciously crafted update message to the BIND DNS server, a remote attacker may be able to interrupt the BIND service. The issue affects servers which are masters for one or more zones, regardless of whether they accept updates. BIND is included with Mac OS X and Mac OS X Server but it is not enabled by default. This update addresses the issue by properly rejecting messages with a record of type 'ANY' where an assertion would previously have been raised." Das Update ist 10,1 MB groß und erfordert einen anschließenden Neustart. [...]

(via (archive.org))

Ressourcen:
- 2009-004 (Intel)
- 2009-004 (PPC)

Aufrufe …

💬 Webmentions & Kommentare

Webmentions

lade Webmentions …

🔥 Beliebteste Artikel

Über thafaker thafaker

Schreibt hin und wieder mal ins Netz rein. Treibt sich auch noch im Usenet rum; mag Vintage-Computing und hört häufig Schallplatten; Rennradfahrer und Personalrat.

Alle Beiträge von thafaker