Security Group Reports Potential Mac Vulnerability

· by · News

The French Security Incident Response Team (FrSIRT) issued a report on Tuesday claiming a potential security risk has been found in Mac OS X. The security flaw takes advantage of a memory corruption error in the com.apple.AppleDiskImageController file when dealing with corrupt disk images. In theory, a remote attacker could execute commands through Safari by embedding them in a malicious Web page.

FrSIRT claims that this vulnerability affects Mac OS X 10.4.8 and earlier, and that Apple has not yet patched the flaw. Users can protect themselves, however, by disabling Safariis Open "safe" files after downloading option in the applicationis preferences.


Uncheck Safariis Open "safe" files option.

There are no known reports of this potential exploit being used.

Jeff Gamet

Jeff Gamet

Jeff is the Mac Observer's Managing Editor, and co-host of the Apple Context Machine podcast. He is the author of "The Designer's Guide to Mac OS X" from Peachpit Press, and writes for several design-related publications. Jeff has presented at events such as Macworld Expo, the RSA Conference, and the Mac Computer Expo. In all his spare time, he also co-hosts the We Have Communicators podcast, and makes guest appearances on several other podcasts, too. Jeff dreams in HD.

Sign Up for the Newsletter

Enter a valid email address

Join the TMO Express Daily Newsletter to get the latest Mac headlines in your e-mail every weekday.

Adding to list…

No Comments

Add your comment

Commenting is not available in this channel entry.