Apple Security Update 2003-08-14 released

Security Update 2003-08-14 addresses a potential vulnerability in the fb_realpath() function which could allow a local or remote user to gain unauthorized root privileges to a system.

The 1.1MB update is available via the Software Update function in Mac OS X or via the Web.

Security Update 2003-08-14 v.1.0 Server is also available.

More info here.

6 Comments

  1. I remember reading here once where some obvoius PC troll had the nerve to criticize Apple for posting so many security updates for OSX. In light of the latest worm attack in Microsoft-land, I’m wondering how much barbecue sauce that person has put on the crow he’s now eating… ” width=”19″ height=”19″ alt=”wink” style=”border:0;” />)

  2. Heh…I like the CROW comment. ;o)

    I did notice a significant drop in the number of Wintel TROLLS on this site when the worm started propagating.

    All I can say is that it couldn’t have happened to a more deserving bunch. ;o)

  3. Do Apple have a team of people deliberately trying to break OSX, so they can fix the patch, or is this a generic UNIX error that someones told them about?

    Apple is based on an open source layer, where many components is shared with Linux, Freebsd, Open and/or Netbsd. Some groups go over open source code to proactively search for potential security bugs. Openbsd is a good example of this, where they try to check every single line of code. There are also companies that pay people to go over code to search for security problems, and you have offcourse the people that happen to stumble on problems.

    Any security expert will tell you that you are better off with open source code.

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.