Image
 
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 24 guests and 2 members online
EH-Net Donations

Enter Amount:
$

Google Ads
EH-Net News Feeds
Latest Additions
Book Recommendations





 
Advertisement

You are here: Home arrow Forum arrow Ethical Hacking Discussions and Related Certificationsarrow Malwarearrow E-mail Flaw Comes Back from the Dead in Leopard
Ethical Hacker Community Forums
January 07, 2009, 09:51:27 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: ChicagoCon 2-Day Ethical Hacking Conference with MS Blue Hats Oct 31 - Nov 1. Tickets Only $100! www.chicagocon.com/content/view/103/51/
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: E-mail Flaw Comes Back from the Dead in Leopard  (Read 917 times)
0 Members and 1 Guest are viewing this topic.
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 2434


Editor-In-Chief


View Profile WWW
« on: November 26, 2007, 03:54:15 PM »

Not to laugh, but pretty much every bad comment Apple makes about Windows is now coming true for them. Should we call this karma, false advertising about Macs or both?

Here's a wild idea to start an argument. How about a class action law suit against Apple?

Quote
Serious Apple Mail flaw patched last year in Tiger finds a new life in the Leopard OS

A serious security flaw in Apple Mail, patched more than a year ago in "Tiger," also known as Mac OS X 10.4, has reared its head again in the latest version of the operating system, according to Heise Security.

Heise discovered that the flaw, which could allow attackers to disguise malicious file attachments, was left open in last month's release of Mac OS X 10.5, "Leopard." The flaw was originally patched in March 2006.

Leopard has been criticized on several fronts since its release, notably for incomplete security measures, problems with some laptop keyboards, a mysterious "blue screen of death," and incompatibility with some older applications.

Leopard arrived two and a half years after Tiger, following a delay as Apple engineers devoted themselves to the iPhone.

The original Mail flaw was caused by limitations in the Download Validation feature used to warn users whether the file type is "safe." Researchers found that the feature could be evaded by attaching a resource fork to a seemingly "safe" file such as a JPEG image. A resource fork contains information such as which program should be associated with the file.

Using this technique, an image attachment would seem harmless, but when launched by the user could, for instance, execute a shell script with no further user interaction.

In 2006 Apple updated Download Validation to examine resource forks, closing the hole.

Heise researchers found that in Leopard, Mail appears to be once again unable to detect resource fork information.

"In tests performed by Heise Security, the Terminal window opened directly in most cases when the attachment to the email check test email was opened," Heise said in a report on Tuesday.

The tests were not consistent, with some attachments triggering the warning dialogue, Heise said.

Heise has developed a test e-mail mechanism, which can be found on its Web site.

Techworld is an InfoWorld affiliate.

Original story:
http://www.infoworld.com/article/07/11/21/E-mail-flaw-comes-back-in-Leopard_1.html

Don
Logged

CISSP, MCSE, CEH, Security+ SME
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.7 | SMF © 2006-2008, Simple Machines LLC
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.173 seconds with 23 queries.
 
Sponsors

cwnp_moto__120x90.gif

Polls
How many security events including conferences and training do you attend a year:
 
Support EH-Net


Support EH-Net by
Buying all of your
Amazon items using
the search bar above.

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!
Recent Forum Topics
Vote For EH-Net

progenic.com
Click here to Vote!

binarica.com
Binarica Logo

Add to Technorati Favorites
technorati fave

 
         
Advertisement

© 2009 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.