Overclock.net - Overclocking.net
     
 
Home Gallery Reviews Blogs Register Today's Posts Mark Forums Read Members List


Go Back   Overclock.net - Overclocking.net > Industry News > Software News

Reply
 
LinkBack Thread Tools
Old 05-25-08   #1 (permalink)
musicphile
 
Miki's Avatar
 
intel nvidia

Join Date: Apr 2007
Location: California
Posts: 2,304

Trader Rating: 3
Exclamation [Blorge] Mac Security Alert: Three vulnerabilities uncovered


Recently, three vulnerabilities have been uncovered with Apple iCal 3.0.1. This could possibly affect those who use Mac 10.5.1 (Leopard). According to the report the most serious of the three due to a resource liberation bug.
The most serious of the three vulnerabilities is due to potential memory corruption resulting from an resource liberation bug that can be triggered with a malformed .ics calendar file specially crafted by a would-be attacker.
“Exploitation of these vulnerabilities in a client-side attack scenario is possible with user assistance by opening or clicking on specially crafted .ics file send over email or hosted on a malicious web server; or without direct user assitance if a would-be attacker has the ability to legitimately add or modify calendar files on a CalDAV server.”
The Bugtraq names are 28629, 28632, and 28633.

Bugtraq 28629 is labeled “Apple iCal ‘COUNT’ Parameter Integer Overflow Vulnerability” and is classified as an “Boundary Condition Error.” In order for this, to work the attacker must entice the unsuspecting user to import a malicious UCS file. According to the report a vulnerable .ics file will contain the following line.
RRULE:FREQ=DAILY;INTERVAL=1;COUNT=2147483646
Bugtraq 28632 is labeled as “Apple iCal ‘TRIGGER’ Parameter Denial of Service Vulnerability” and is classified as a “Design Error.” In order, to be successful the attacker must entice an unsuspecting user to import a malicious ICS file.

Bugtraq 28633 is labeled “Apple iCal ‘ATTACH’ Parameter Denial Of Service Vulnerability” and is classified as a “Input Validation error”. Checking out the exploit report nothing is said about the issue although it does link you to a “proof of concept file.” According to the report, direct user involvement isn’t necessary if the attacker is able to add or modify calendar files on a CalDAV server.

If you haven’t already done so you can receive updates for your Mac automatically.

How to get updates immediately (Mac OS X 10.3, 10.4, 10.5 or later)

1. Go to the Apple menu
2. Click on Software Update. Clicking on Software update will check for available updates.
3. Mac OSX 10.3.x only: Click on the Check Now button.
4. From the Software Update window choose the items you want to install
5. Install the software. You usually want to install all the software updates.
6. When prompted, enter the administration account name and password.
7. Once the installation is complete, restart your Mac computer if it is required.

When I first set up automatic software update I found out that I had to run the software update a few times since some of the updates that I had installed were prerequisites for others.

If you are on a Mac OS X 10.2 or lower steps 1-3 are slightly different. Complete the first three steps and pick up the above steps 4-7.

1. Go to the Apple menu
2. Choose System Preferences
3. From the View Menu, select Software Update

Rodrigo Carvalho who works for the Core Security Consulting Services Team at Core Security Technologies discovered and researched these vulnerabilities. Additional research was done by Ricardo Narvaja from CORE IMPACT (also part of Core Security Technologies) the Exploit Writers Team. Reading the report it states that vulnerabilities in a client-side attack is possible.

Core Security Technologies is a USA company based in Boston. It provides audit, penetration testing, and software based products and services.

Core Security Technologies has not observed these exploits in the wild. The vulnerabilities were observed during BugWeek 2007. The report was published on May 21, 2008.

Source: Blorge
__________________
If there are no dogs in Heaven, then when I die,
I want to go where they went. =]
Quote:
Originally Posted by kimosabi View Post
Miki is good looking. That alone is a force to be reckoned with.
<3

System: Vaio CW o_O
CPU
C2D T6600 @ 2.2GHz
Motherboard
heh o_O
Memory
2x2gb DDR3 1066
Graphics Card
GT230M 512mb
Hard Drive
500gb 5400 RPM
Sound Card
Intel HD Audio
Power Supply
Lithium-ion Battery XD
Case
Icy White O_o
OS
7 Home Premium 64bit
Monitor
14" (1366x768)
Miki is offline Overclocked Account   Reply With Quote
Old 05-25-08   #2 (permalink)
Hardcore Music Lover
 
Unknownm's Avatar
 
amd ati

Join Date: Aug 2006
Location: Vancouver
Posts: 6,550

Rep: 319 Unknownm is a proven memberUnknownm is a proven memberUnknownm is a proven memberUnknownm is a proven member
Unique Rep: 229
FAQs Submitted: 1
Trader Rating: 7
Default

I wont be needing this. I removed Apple iCal in app folder. unless it stores it somewhere else?
__________________
Coma's youtube HD Encoder: (32-bit & 64-bit Windows)

Youtube: Audiotranceable

System: Rig
CPU
X3 720BE @ 3.44Ghz
Motherboard
Gigabyte GA-MA790X-UD4P
Memory
2x1GB DDR2-800 @ 860Mhz
Graphics Card
Radeon 4830 @ 720/1050
Hard Drive
500GB SATAII
Sound Card
Realtek HD
Power Supply
BFG 680w
Case
Cooler Master Elite 335
OS
Windows 7 Pro 64-bit
Monitor
P1130 @ 1792x1344x85hz
Unknownm is offline Overclocked Account Unknownm's Gallery   Reply With Quote
Old 05-25-08   #3 (permalink)
RUNRUNRUN I HUNGER COWARD
 
Marin's Avatar
 
intel ati

Join Date: Nov 2007
Location: Norcal
Posts: 11,416

Folding Team Rank: 1232
Trader Rating: 4
Default

I don't use iCal, and I see there is already an update. So what's the big deal.
__________________
Rampage Torture Rack Build Log|Torture Rack|Antec 300|Antec 1200|Antec 1200 Night Photos|Antec 1200 Inside

50D (Sigma 30mm f/1.4 EX DC HSM | Nikkor 50mm f/1.2 | Nikkor 55mm f/1.2 | Canon EF-S 10-22mm f/3.5-4.5 USM | Canon EF-S 60mm f/2.8 Macro USM | Canon 70-200mm f/4L IS USM | Crumpler 7MDH | B+W filters)


Images: Flickr

OCN Team Fortress 2 Group

System: All your base are belong to us
CPU
Q6600 G0 @ 3.4
Motherboard
Rampage Formula[NB]HR-05 SLI/IFX [SB]HR-05 SLI/IFX
Memory
8gb's G.Skill Black Pi DDR2-900 [4-4-4-12]
Graphics Card
VisionTek 4870x2
Hard Drive
500GB AAKS, 2x 640GB AAKS
Sound Card
X-Fi Platinum
Power Supply
Silverstone OP850
Case
Antec 1200 [Four Nanoxia FX12] [Two San Ace 1011]
CPU cooling
[Lapped] TRUE + San Ace H401 [Push/Pull]
GPU cooling
Accelero XTREME
OS
Vista Ultimate 64-bit/Ubuntu 64-bit
Monitor
Samsung 245BW
Marin is offline I fold for Overclock.net Overclocked Account Marin's Gallery   Reply With Quote
Old 05-27-08   #4 (permalink)
Multi-Quote King
 
The Hundred Gunner's Avatar
 
amd nvidia

Join Date: Jul 2006
Posts: 9,225

Rep: 761 The Hundred Gunner is becoming famousThe Hundred Gunner is becoming famousThe Hundred Gunner is becoming famousThe Hundred Gunner is becoming famousThe Hundred Gunner is becoming famousThe Hundred Gunner is becoming famousThe Hundred Gunner is becoming famous
Unique Rep: 421
Folding Team Rank: 2046
Trader Rating: 0
Default

They friggin F-ed up iCal in Leopard. Tiger's was great, but Leopard's totally sucks ass. iCal 3 is epic fail. So we got interface problems, and now security problems.

Quote:
Originally Posted by Unknownm View Post
I wont be needing this. I removed Apple iCal in app folder. unless it stores it somewhere else?
iCal (was) a great program. I can see why you removed it since you have Leopard lol
__________________
"I just talk the way I see things... If that's offensive to you... I'm sorry; you're a loser." - Michael Savage

"But you would be amazed by how many people think that the only reason to have a computer is to play games, and that playing games is all that anyone with a computer does." - dangerousHobo

System: The Shuttle Has Landed
CPU
Athlon 64 3800+ @2.785GHz
Motherboard
Shuttle
Memory
2GB OCZ
Graphics Card
7950GT
Hard Drive
320GB Seagate in Ext. Case
Sound Card
On-board
Power Supply
250W Shuttle "Elanpower"
Case
Shuttle Glamour xPC
CPU cooling
Shuttle "ICE2"
GPU cooling
Stock
OS
Censored to avoid flaming
Monitor
HP M70
The Hundred Gunner is offline I fold for Overclock.net Overclocked Account   Reply With Quote
Old 05-27-08   #5 (permalink)
4.1GHz and counting...
 
onlycodered's Avatar
 
intel nvidia

Join Date: Mar 2008
Location: Rochester, NY
Posts: 4,047

Rep: 271 onlycodered is a proven memberonlycodered is a proven memberonlycodered is a proven member
Unique Rep: 223
Folding Team Rank: 257
Trader Rating: 15
Default

Yeah. iCal sucks now unfortunately.
__________________
Quote:
Originally Posted by GH0 View Post
So, as a staff from EVGA has told me to do:
PLEASE DO NOT EVER BUY ANOTHER EVGA PRODUCT AGAIN.
Fold for the cause. Fold for team 37726!
Former "The Replacements" folding team member
CPU-Z valid GPU-Z valid

System: Desktop
CPU
E8400 (4.1GHz / 1.33v)
Motherboard
Gigabyte P35-DS3L rev 2
Memory
2x2GB mushkin XP2-8500 DDR2 1066
Graphics Card
XFX GeForce GTS 250 1GB Core Edition
Hard Drive
WD Caviar Black 640GB
Sound Card
Integrated
Power Supply
Xigmatek NRP-MC751 750W
Case
Antec Three Hundred
CPU cooling
Xigmatek Thor's Hammer / D12SM-124B
OS
Windows 7 Professional x64
Monitor
Samsung 2253BW
onlycodered is offline I fold for Overclock.net Overclocked Account onlycodered's Gallery   Reply With Quote
Old 05-27-08   #6 (permalink)
With great difficulty
 
rabidgnome229's Avatar
 
intel nvidia

Join Date: Feb 2006
Location: Pittsburgh
Posts: 5,206

Rep: 613 rabidgnome229 is becoming famousrabidgnome229 is becoming famousrabidgnome229 is becoming famousrabidgnome229 is becoming famousrabidgnome229 is becoming famousrabidgnome229 is becoming famous
Unique Rep: 369
FAQs Submitted: 6
Trader Rating: 5
Default

Quote:
Originally Posted by Miki View Post
Core Security Technologies has not observed these exploits in the wild. The vulnerabilities were observed during BugWeek 2007. The report was published on May 21, 2008.
Yet another article about theoretical Apple security issues. What's wrong, can't find any real attacks to post?
__________________
System: It goes to eleven
CPU
E6300
Motherboard
DS3
Memory
2GB XMS2 DDR2-800
Graphics Card
EVGA 8600GTS
Hard Drive
1.294 TB
Sound Card
Audigy 2 ZS
Power Supply
Corsair 520HX
Case
Lian-Li v1000B Plus
CPU cooling
TTBT
GPU cooling
Thermalright V2
OS
Arch Linux/XP
Monitor
Samsung 226bw

Last edited by rabidgnome229 : 05-27-08 at 11:29 PM
rabidgnome229 is offline Overclocked Account   Reply With Quote
Old 05-27-08   #7 (permalink)
4.1GHz and counting...
 
onlycodered's Avatar
 
intel nvidia

Join Date: Mar 2008
Location: Rochester, NY
Posts: 4,047

Rep: 271 onlycodered is a proven memberonlycodered is a proven memberonlycodered is a proven member
Unique Rep: 223
Folding Team Rank: 257
Trader Rating: 15
Default

Quote:
Originally Posted by rabidgnome229 View Post
Yet another article about theoretical Apple security issues. What's wrong, can't find any real attacks to post?
Haha. So true.
__________________
Quote:
Originally Posted by GH0 View Post
So, as a staff from EVGA has told me to do:
PLEASE DO NOT EVER BUY ANOTHER EVGA PRODUCT AGAIN.
Fold for the cause. Fold for team 37726!
Former "The Replacements" folding team member
CPU-Z valid GPU-Z valid

System: Desktop
CPU
E8400 (4.1GHz / 1.33v)
Motherboard
Gigabyte P35-DS3L rev 2
Memory
2x2GB mushkin XP2-8500 DDR2 1066
Graphics Card
XFX GeForce GTS 250 1GB Core Edition
Hard Drive
WD Caviar Black 640GB
Sound Card
Integrated
Power Supply
Xigmatek NRP-MC751 750W
Case
Antec Three Hundred
CPU cooling
Xigmatek Thor's Hammer / D12SM-124B
OS
Windows 7 Professional x64
Monitor
Samsung 2253BW
onlycodered is offline I fold for Overclock.net Overclocked Account onlycodered's Gallery   Reply With Quote
Old 05-27-08   #8 (permalink)
*cough* Stock *cough*
 
gex80's Avatar
 
intel ati

Join Date: Nov 2007
Posts: 1,707

Rep: 66 gex80 is acknowledged by some
Unique Rep: 57
Trader Rating: 0
Default

See it was only a matter of time and size of user base before exploits are found. I like how the apple rep in my store says that apples don't get hacked and that they are the most secure OS to date. The more market share apple gains, the more holes will be found. It's sorta going the way window is. Now all someone needs to do is make a virus for mac and there goes one of their biggest marketing advantage. But then again it still is hard since it's based off of unix.
__________________
Zune Owner's Club!

I tried Latty's Linux challenge. I now despise that OS all together.

System: The Feather Weight
CPU
Q6700
Motherboard
Intel DP45SG
Memory
2x2GB DDR3 1066
Graphics Card
Visiontek HD 4870
Hard Drive
320 Western Digital + 1TB Black Caviar WD
Sound Card
Creative x-fi extreme gamer
Power Supply
BFG 800 Watt
Case
Antec 900
CPU cooling
OCZ Vendetta II
GPU cooling
Stock
OS
vista ultimate x64/Windows 7 Ultimate 64x
Monitor
Samsung T220 22 inch
gex80 is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools



All times are GMT -4. The time now is 07:19 PM.


Overclock.net is a Carbon Neutral Site Creative Commons License

Terms of Service / Forum Rules | Privacy Policy | DMCA Info | Advertising | Become an Official Vendor
Copyright © 2009 Shogun Interactive Development. Most rights reserved.
Page generated in 0.17085 seconds with 8 queries