Overclock.net - Overclocking.net
     
 
Home Gallery Reviews Blogs Register Today's Posts Mark Forums Read Members List


Go Back   Overclock.net - Overclocking.net > Industry News > Software News

Reply
 
LinkBack Thread Tools
Old 05-25-08   #1 (permalink)
(=^·^=)
 
Miki's Avatar
 
intel ati

Join Date: Apr 2007
Location: California
Posts: 1,342

Trader Rating: 3
Exclamation [Blorge] Mac Security Alert: Three vulnerabilities uncovered


Recently, three vulnerabilities have been uncovered with Apple iCal 3.0.1. This could possibly affect those who use Mac 10.5.1 (Leopard). According to the report the most serious of the three due to a resource liberation bug.
The most serious of the three vulnerabilities is due to potential memory corruption resulting from an resource liberation bug that can be triggered with a malformed .ics calendar file specially crafted by a would-be attacker.
“Exploitation of these vulnerabilities in a client-side attack scenario is possible with user assistance by opening or clicking on specially crafted .ics file send over email or hosted on a malicious web server; or without direct user assitance if a would-be attacker has the ability to legitimately add or modify calendar files on a CalDAV server.”
The Bugtraq names are 28629, 28632, and 28633.

Bugtraq 28629 is labeled “Apple iCal ‘COUNT’ Parameter Integer Overflow Vulnerability” and is classified as an “Boundary Condition Error.” In order for this, to work the attacker must entice the unsuspecting user to import a malicious UCS file. According to the report a vulnerable .ics file will contain the following line.
RRULE:FREQ=DAILY;INTERVAL=1;COUNT=2147483646
Bugtraq 28632 is labeled as “Apple iCal ‘TRIGGER’ Parameter Denial of Service Vulnerability” and is classified as a “Design Error.” In order, to be successful the attacker must entice an unsuspecting user to import a malicious ICS file.

Bugtraq 28633 is labeled “Apple iCal ‘ATTACH’ Parameter Denial Of Service Vulnerability” and is classified as a “Input Validation error”. Checking out the exploit report nothing is said about the issue although it does link you to a “proof of concept file.” According to the report, direct user involvement isn’t necessary if the attacker is able to add or modify calendar files on a CalDAV server.

If you haven’t already done so you can receive updates for your Mac automatically.

How to get updates immediately (Mac OS X 10.3, 10.4, 10.5 or later)

1. Go to the Apple menu
2. Click on Software Update. Clicking on Software update will check for available updates.
3. Mac OSX 10.3.x only: Click on the Check Now button.
4. From the Software Update window choose the items you want to install
5. Install the software. You usually want to install all the software updates.
6. When prompted, enter the administration account name and password.
7. Once the installation is complete, restart your Mac computer if it is required.

When I first set up automatic software update I found out that I had to run the software update a few times since some of the updates that I had installed were prerequisites for others.

If you are on a Mac OS X 10.2 or lower steps 1-3 are slightly different. Complete the first three steps and pick up the above steps 4-7.

1. Go to the Apple menu
2. Choose System Preferences
3. From the View Menu, select Software Update

Rodrigo Carvalho who works for the Core Security Consulting Services Team at Core Security Technologies discovered and researched these vulnerabilities. Additional research was done by Ricardo Narvaja from CORE IMPACT (also part of Core Security Technologies) the Exploit Writers Team. Reading the report it states that vulnerabilities in a client-side attack is possible.

Core Security Technologies is a USA company based in Boston. It provides audit, penetration testing, and software based products and services.

Core Security Technologies has not observed these exploits in the wild. The vulnerabilities were observed during BugWeek 2007. The report was published on May 21, 2008.

Source: Blorge
__________________
Comprehensive List of Overclock.net Rules
- a must read for all members
Two roads diverged in a wood, and I--
I took the one less traveled by,
And that has made all the difference.
- Robert Frost -

System: ←Miki's
CPU
E6600 C2D @ 3.4GHz
Motherboard
GA-EP45-UD3P
Memory
2x2GB Ballistix Tracers
Graphics Card
HiS HD4850 1GB
Hard Drive
Raptor 150GB+Black 640GB
Sound Card
X-Fi XtremeGamer
Power Supply
Corsair HX520
Case
Antec Nine Hundred
CPU cooling
Zalman 9500 LED
GPU cooling
HiS IceQ4 Cooling
OS
7 Ultimate x64 (7100)
Monitor
LG L227WTG-PF
Miki is online now Overclocked Account   Reply With Quote
Old 05-25-08   #2 (permalink)
2900xt is a fail!
 
Unknownm's Avatar
 
amd ati

Join Date: Aug 2006
Location: Vancouver
Posts: 6,162
Blog Entries: 1

Rep: 299 Unknownm is a proven memberUnknownm is a proven memberUnknownm is a proven member
Unique Rep: 214
FAQs Submitted: 1
Trader Rating: 6
Default

I wont be needing this. I removed Apple iCal in app folder. unless it stores it somewhere else?
__________________

Quote:
Originally Posted by Diesel Phreak
I loaded up Bioshock and maxed out the settings, but this graphics slit the game's throat then ate it's entrails for dessert. It slammed Assassin's Creed's head onto the curb then stomped its head into that curb until it was nothing but a bloody pulp. This card is one bad mo-fo. It'll backhand your sister and degrade your mom, but they will still love it and want to date it because it is just that good. I love this card so much that I burned my tongue trying to french kiss it, and I still keep trying.

System: POS Until I get a new one
CPU
AMD Sempron 2600+
Motherboard
Foxconn WinFast 760GXK8MB
Memory
2x 512MB
Graphics Card
ATi Radeon 9600Pro
Hard Drive
IDE 80GB & 250GB SATAII
Sound Card
AC97
OS
Ubuntu 9.04 (32-bit)
Monitor
Dell Trinitron 21 Inch
Unknownm is offline Overclocked Account Unknownm's Gallery   Reply With Quote
Old 05-25-08   #3 (permalink)
Rainbow Stalin
 
Marin's Avatar
 
intel ati

Join Date: Nov 2007
Location: Norcal
Posts: 10,823

Folding Team Rank: 1049
Trader Rating: 4
Default

I don't use iCal, and I see there is already an update. So what's the big deal.
__________________
Rampage Torture Rack Build Log|Torture Rack|Antec 300|Antec 1200|Antec 1200 Night Photos|Antec 1200 Inside

50D | XSi w/BG-E5 (Sigma 30mm f/1.4 EX DC HSM | Canon EF-S 10-22mm f/3.5-4.5 | Canon EF-S 18-55mm f/3.5-5.6 IS | Canon EF-S 60mm f/2.8 Macro USM | Manfrotto 680B | Manfrotto 486RC2 | B+W filters)


Images: Flickr

OCN Team Fortress 2 Group

System: All your base are belong to us
CPU
Q6600 G0 @ 3.4
Motherboard
Rampage Formula[NB]HR-05 SLI/IFX [SB]HR-05 SLI/IFX
Memory
8gb's G.Skill Black Pi DDR2-900 [4-4-4-12]
Graphics Card
VisionTek 4870x2
Hard Drive
500GB AAKS, 2x 640GB AAKS
Sound Card
X-Fi Platinum
Power Supply
Silverstone OP850
Case
Antec 1200 [Four Nanoxia FX12] [Two San Ace 1011]
CPU cooling
[Lapped] TRUE + San Ace H401 [Push/Pull]
GPU cooling
Accelero XTREME
OS
Vista Ultimate 64-bit/Ubuntu 64-bit
Monitor
Samsung 245BW
Marin is offline I fold for Overclock.net Overclocked Account Marin's Gallery   Reply With Quote
Old 05-27-08   #4 (permalink)
Multi-Quote King
 
The Hundred Gunner's Avatar
 
amd nvidia

Join Date: Jul 2006
Posts: 9,094

Rep: 744 The Hundred Gunner is becoming famousThe Hundred Gunner is becoming famousThe Hundred Gunner is becoming famousThe Hundred Gunner is becoming famousThe Hundred Gunner is becoming famousThe Hundred Gunner is becoming famousThe Hundred Gunner is becoming famous
Unique Rep: 413
Folding Team Rank: 1801
Trader Rating: 0
Default

They friggin F-ed up iCal in Leopard. Tiger's was great, but Leopard's totally sucks ass. iCal 3 is epic fail. So we got interface problems, and now security problems.

Quote:
Originally Posted by Unknownm View Post
I wont be needing this. I removed Apple iCal in app folder. unless it stores it somewhere else?
iCal (was) a great program. I can see why you removed it since you have Leopard lol
__________________
"But you would be amazed by how many people think that the only reason to have a computer is to play games, and that playing games is all that anyone with a computer does." - dangerousHobo

"Linux is everywhere, it is all around us, even now in this very room. You can see it when you look out your window, or you turn on your television. You can feel it when you go to work, when you go to church, when you pay your taxes. " - mbp

"I have used a mac before. And they still don't have right click I mean come on." - aakar

System: The Shuttle Has Landed
CPU
Athlon 64 3800+ @2.785GHz
Motherboard
Shuttle
Memory
2GB OCZ
Graphics Card
7950GT
Hard Drive
320GB Seagate in Ext. Case
Sound Card
On-board
Power Supply
250W Shuttle "Elanpower"
Case
Shuttle Glamour xPC
CPU cooling
Shuttle "ICE2"
GPU cooling
Stock
OS
Censored to avoid flaming
Monitor
HP M70
The Hundred Gunner is offline I fold for Overclock.net Overclocked Account   Reply With Quote
Old 05-27-08   #5 (permalink)
4.1GHz and counting...
 
onlycodered's Avatar
 
intel nvidia

Join Date: Mar 2008
Location: Rochester, NY
Posts: 3,977

Rep: 270 onlycodered is a proven memberonlycodered is a proven memberonlycodered is a proven member
Unique Rep: 222
Folding Team Rank: 195
Trader Rating: 15
Default

Yeah. iCal sucks now unfortunately.
__________________
Quote:
Originally Posted by GH0 View Post
So, as a staff from EVGA has told me to do:
PLEASE DO NOT EVER BUY ANOTHER EVGA PRODUCT AGAIN.
Fold for the cause. Fold for team 37726!
Former "The Replacements" folding team member
CPU-Z valid GPU-Z valid

System: Desktop
CPU
E8400 (4.1GHz / 1.33v)
Motherboard
Gigabyte P35-DS3L rev 2
Memory
2x2GB mushkin XP2-8500 DDR2 1066
Graphics Card
XFX GeForce GTS 250 1GB Core Edition
Hard Drive
WD Caviar Black 640GB
Sound Card
Integrated
Power Supply
Xigmatek NRP-MC751 750W
Case
Antec Three Hundred
CPU cooling
HDT-S1283 / D12SM-124B / Bolt-thru
OS
Windows Vista Business x64
Monitor
Samsung 2253BW
onlycodered is offline I fold for Overclock.net Overclocked Account onlycodered's Gallery   Reply With Quote
Old 05-27-08   #6 (permalink)
With great difficulty
 
rabidgnome229's Avatar
 
intel nvidia

Join Date: Feb 2006
Location: Pittsburgh
Posts: 5,105
Blog Entries: 2

Rep: 596 rabidgnome229 is becoming famousrabidgnome229 is becoming famousrabidgnome229 is becoming famousrabidgnome229 is becoming famousrabidgnome229 is becoming famousrabidgnome229 is becoming famous
Unique Rep: 359
FAQs Submitted: 6
Trader Rating: 5
Default

Quote:
Originally Posted by Miki View Post
Core Security Technologies has not observed these exploits in the wild. The vulnerabilities were observed during BugWeek 2007. The report was published on May 21, 2008.
Yet another article about theoretical Apple security issues. What's wrong, can't find any real attacks to post?
__________________
System: It goes to eleven
CPU
E6300
Motherboard
DS3
Memory
2GB XMS2 DDR2-800
Graphics Card
EVGA 8600GTS
Hard Drive
1.294 TB
Sound Card
Audigy 2 ZS
Power Supply
Corsair 520HX
Case
Lian-Li v1000B Plus
CPU cooling
TTBT
GPU cooling
Thermalright V2
OS
Arch Linux/XP
Monitor
Samsung 226bw

Last edited by rabidgnome229 : 05-27-08 at 10:29 PM
rabidgnome229 is offline Overclocked Account   Reply With Quote
Old 05-27-08   #7 (permalink)
4.1GHz and counting...
 
onlycodered's Avatar
 
intel nvidia

Join Date: Mar 2008
Location: Rochester, NY
Posts: 3,977

Rep: 270 onlycodered is a proven memberonlycodered is a proven memberonlycodered is a proven member
Unique Rep: 222
Folding Team Rank: 195
Trader Rating: 15
Default

Quote:
Originally Posted by rabidgnome229 View Post
Yet another article about theoretical Apple security issues. What's wrong, can't find any real attacks to post?
Haha. So true.
__________________
Quote:
Originally Posted by GH0 View Post
So, as a staff from EVGA has told me to do:
PLEASE DO NOT EVER BUY ANOTHER EVGA PRODUCT AGAIN.
Fold for the cause. Fold for team 37726!
Former "The Replacements" folding team member
CPU-Z valid GPU-Z valid

System: Desktop
CPU
E8400 (4.1GHz / 1.33v)
Motherboard
Gigabyte P35-DS3L rev 2
Memory
2x2GB mushkin XP2-8500 DDR2 1066
Graphics Card
XFX GeForce GTS 250 1GB Core Edition
Hard Drive
WD Caviar Black 640GB
Sound Card
Integrated
Power Supply
Xigmatek NRP-MC751 750W
Case
Antec Three Hundred
CPU cooling
HDT-S1283 / D12SM-124B / Bolt-thru
OS
Windows Vista Business x64
Monitor
Samsung 2253BW
onlycodered is offline I fold for Overclock.net Overclocked Account onlycodered's Gallery   Reply With Quote
Old 05-27-08   #8 (permalink)
*cough* Stock *cough*
 
gex80's Avatar
 
intel nvidia

Join Date: Nov 2007
Posts: 1,506

Rep: 62 gex80 is acknowledged by some
Unique Rep: 54
Trader Rating: 0
Default

See it was only a matter of time and size of user base before exploits are found. I like how the apple rep in my store says that apples don't get hacked and that they are the most secure OS to date. The more market share apple gains, the more holes will be found. It's sorta going the way window is. Now all someone needs to do is make a virus for mac and there goes one of their biggest marketing advantage. But then again it still is hard since it's based off of unix.
__________________
Zune Owner's Club!

I tried Latty's Linux challenge. I now despise that OS all together.

System: The Feather Weight
CPU
Q6700
Motherboard
Intel DP45SG
Memory
2x2GB DDR3 1066
Graphics Card
BFG 8800 GT OC
Hard Drive
320 Western Digital + 1TB Black Caviar WD
Sound Card
Creative x-fi extreme gamer
Power Supply
BFG 800 Watt
Case
Antec 900
CPU cooling
OCZ Vendetta II
GPU cooling
Stock
OS
XP Pro x86/vista ultimate x64
Monitor
Samsung T220 22 inch
gex80 is online now   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools



All times are GMT -4. The time now is 04:28 AM.


Overclock.net is a Carbon Neutral Site Creative Commons License Internet Security By ControlScan

Terms of Service / Forum Rules | Privacy Policy | Advertising | Become an Official Vendor
Copyright © 2009 Shogun Interactive Development. Most rights reserved.
Page generated in 0.14405 seconds with 8 queries