Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> MacOS X Local Security Checks >> Mac OS X Security Update 2007-001


Vulnerability Assessment Details

Mac OS X Security Update 2007-001

Vulnerability Assessment Summary
Check for the presence of the SecUpdate 2007-001

Detailed Explanation for this Vulnerability Assessment

Summary :

The remote host is missing a Mac OS X update which fixes a security
issue.

Description :

The remote host is running a version of Mac OS X 10.4 which does not have
the security update 2007-001 applied.

This update fixes a flaw in QuickTime which may permit a rogue website to
execute arbitrary code on the remote host by exploiting an overflow in
the RTSP URL handler.

Solution :

Install the security update 2007-001 :

http://www.apple.com/support/downloads/securityupdate2007001universal.html
http://www.apple.com/support/downloads/securityupdate2007001panther.html

See also :

http://docs.info.apple.com/article.html?artnum=304989

Network Security Threat Level:

Medium / CVSS Base Score : 5.6
(AV:R/AC:H/Au:NR/C:P/I:P/A:P/B:N)

Networks Security ID: 21672

Vulnerability Assessment Copyright: This script is Copyright (C) 2007 Tenable Network Security

Cables, Connectors

IBM X3500 M4 E5-2609 2.4GHz QC 8GB 4x 600GB Tower Server
$990.0
IBM X3500 M4 E5-2609 2.4GHz QC 8GB 4x 600GB Tower Server  pictureIBM 8203-E4A Server w/ 1x Power6 CPU 4.2GHz, 16GB RAM, No HDDs, LTO 4 Tape Drive
$600.0
IBM 8203-E4A Server w/ 1x Power6 CPU 4.2GHz, 16GB RAM, No HDDs, LTO 4 Tape Drive picture48GB PC2-5300F (12 x 4GB) DELL POWEREDGE IBM HP SERVER RAM MEMORY 2RX4
$59.99
48GB PC2-5300F (12 x 4GB) DELL POWEREDGE IBM HP SERVER RAM MEMORY 2RX4 pictureIBM Power 740 8205-E6B 3.7GHz Power7 64GB RAM No HDD
$199.99
IBM Power 740 8205-E6B 3.7GHz Power7 64GB RAM No HDD picture


Discussions

No Discussions have been posted on this vulnerability.