Impact: Viewing or downloading a document containing a maliciously crafted embedded font may lead to arbitrary code executionThe update is available for all users who have the latest version of either Leopard or Snow Leopard installed on Mac OS X Server 10.5, Mac OS X 10.5.8, Mac OS X Server 10.6, or Mac OS X 10.6.4 .
Description: A stack buffer overlow exists in Apple Type Services’ handling of embedded fonts. Viewing or downloading a document containing a maliciously crafted embedded font may lead to arbitrary code execution. This issue is addressed through improved bounds checking.
Wednesday, August 25, 2010
Mac has got its own PDF exploit fix in a new security update, it's the same as the iOS 4.0.2 for iPhone / iPod Touch, and iOS 3.2.2 for iPad which fixes PDF exploit that was discovered when JailbreakMe released! Here's what Apple says about the security update.
Post by David Weltzien um 5:51 PM