# Calendar
November 2008
M T W T F S S
« Oct    
 12
3456789
10111213141516
17181920212223
24252627282930
You are currently browsing the Stan's List weblog archives for the 'Security' category.
Info End -->
You are currently browsing the Stan's List weblog archives for the 'Security' category.

If you need further reason to update your Flash Player and plugin, this should do the job. Here is the most important section of the bulletin:

Critical vulnerabilities have been identified in Adobe Flash Player that could allow an attacker who successfully exploits these potential vulnerabilities to take control of the affected system. A malicious SWF must be loaded in Flash Player by the user for an attacker to exploit these potential vulnerabilities. It is recommended users update to the most current version of Flash Player available for their operating system.

Flash Player v9.0.124.0 is available for PPC and Intel

While network attacks were unable to succeed yesterday, forcing the MBA to visit a pre-coded web page today allowed complete control in 2 minutes. An achievement akin to leaving your password on the screen, in other words, it was another user enabled attack. Nothing that should be worth $10,000. Read about it. Crave

Security Update 2008-002 is recommended for all users and improves the security of Mac OS X. Previous security updates have been incorporated into this security update.

The update is only intended for those Macs running Mac OS X v10.5.2 with Aperture 2.0, and comes in the following formats:

Security Update 2008-002 v1.1 (Leopard)

Security Update 2008-002 v1.1 Server (Leopard)

Also via Software Update

This update extends RAW file compatibility for Aperture 2 and iPhoto ’08 for the following 11 cameras:

Hasselblad CFV-16
Hasselblad H3D-31
Hasselblad H3D-31II
Leaf Aptus 54S
Leaf Aptus 65S
Nikon D60
Olympus E-3
Pentax *ist DL2
Pentax *ist DS2
Pentax K100D Super
Sony DSLR-A200
Sony DSLR-A350
The one security patch was also included in the Security Update 2008-02 and is applicable for users of Aperture 2 and IPhoto 7.1.2.

Available via Software Update or manual download

# Security Update 2008 - 002 |

Security Update 2008-002 address a bucket load of security issues and is released in versions for Intel and PPC Macs for Tiger and Leopard, as wells as Server version:

* Mac OS X 10.4.11 PowerPC (Server and Standard)
* Mac OS X 10.4.11 (”Universal” for Intel)

* Mac OS X 10.5.2
* Server 10.5.2

* Server 10.4.11 PowerPC
* Server 10.4.11 (”Universal” for Intel)

Security Update 2008-001 is recommended for all users and improves the security of Mac OS X. Security Update 2007-009 has been incorporated into this security update. The update is available in PPC and Universal formats .

# Googling yourself |

Have you either googled your friends, fellow employees, your loved ones or yourself? Googling either, particularly yourselves, is growing. The New York Times has some interesting demographic data. Is their concern about how the information might be used? Those that are warned about the use of information are most reluctant to share it. The greater use of Google is to find companies. I use Google at work to find successors for lenders. I can do this by name, address and sometimes, telephone numbers. More …

# Security Update 2007-009 |

Apple’s Security Update 2007-009 has versions for for Mac OS X 10.5.1, Mac OS X 10.4.11 Universal, and Mac OS X 10.4.11 PPC, each with its own lengthly list of security patches.

About Security Update 2007-009 is a huge article that provides details of the applied security patches.

MacInTouch’s main page has several reports of a major bug in QuickBooks Pro MAC for version 2006 and 2007. QuickBooks will report there is not enough disk space Click the “No” button to cancel the update. if you proceed, you stand to lose all the files on your desktop.

This Java update is for Mac OS X 10.4.10 and 10.4.11 (Tiger only). Includes a number of security patches and delivers improved reliability and compatibility for Java 2 Platform Standard Edition 5.0 and Java 1.4 on Mac OS X 10.4.10 and later. This release updates J2SE 5.0 to version 1.5.0_13 and Java 1.4 to version 1.4.2_16.