PDA

View Full Version : Leopard and Snow Leopard flaw exploited in proof of concept, real-world tomfoolery su



allaboutsymbian
January 13th, 2010, 14:40
http://www.blogcdn.com/www.engadget.com/media/2010/01/apple-worm-20100112.jpg (http://securityreason.com/securityalert/6932)Look at you, all cuddled up with your Leopard install, sipping on a steamy hot cocoa, watching the snow fall outdoors, and thinking you don't have a care in the world. We hate to break it to ya but you do have a care, a big one, thanks to a proof of concept hack exploiting a buffer overflow in MacOS 10.5 (http://www.engadget.com/tag/leopard) and 10.6 (http://www.engadget.com/tag/snowleopard). The flaw has been known about since June, but only now has it been proven to work on Cupertino's latest, and a very straightforward code example of how to use it has been posted online. You know what that means: watch out for those e-mail attachments. Interestingly, the flaw is also said to possibly exist in the PS3 (http://www.engadget.com/tag/ps3) as well, which could make for a very interesting spring -- cocoa or no.Leopard and Snow Leopard flaw exploited in proof of concept, real-world tomfoolery surely coming soon (http://www.engadget.com/2010/01/13/leopard-and-snow-leopard-flaw-exploited-in-proof-of-concept-rea/) originally appeared on Engadget (http://www.engadget.com) on Wed, 13 Jan 2010 09:05:00 EST. Please see our terms for use of feeds (http://www.weblogsinc.com/feed-terms/).


Permalink (http://www.engadget.com/2010/01/13/leopard-and-snow-leopard-flaw-exploited-in-proof-of-concept-rea/) http://www.blogsmithmedia.com/www.engadget.com/media/post_label_VIA.gifDailyTech (http://www.dailytech.com/Code%20Posted%20Online%20Takes%20Advantage%20of%20 Mac%20OS%20X%20Flaw/article17357.htm) | http://www.blogsmithmedia.com/www.engadget.com/media/post_label_source.gifSecurityReason (http://securityreason.com/securityalert/6932) | Email this (http://www.engadget.com/forward/19314998/) | Comments (http://www.engadget.com/2010/01/13/leopard-and-snow-leopard-flaw-exploited-in-proof-of-concept-rea/#comments)

More... (http://www.engadget.com/2010/01/13/leopard-and-snow-leopard-flaw-exploited-in-proof-of-concept-rea/)