Focus on Apple
Apple OS X Software Update Vulnerability and APPLE-SA-2007-12-17 Dec 17 2007 10:16PM
Todd Woodward (todd_woodward symantec com) (2 replies)
Re: Apple OS X Software Update Vulnerability and APPLE-SA-2007-12-17 Dec 18 2007 01:26PM
Derek Chesterfield (dez mac com) (1 replies)
Fwd: Apple OS X Software Update Vulnerability and APPLE-SA-2007-12-17 Dec 18 2007 05:21PM
Derek Chesterfield (dez mac com) (1 replies)
Begin forwarded message:

> The email quarantine problem reported by Heise <http://www.heise-security.co.uk/news/99257
> > has also been fixed.

I should have mentioned:

when I first tried to check if this was fixed, the Heise POC
attachment launched without the prompt. This was because the
attachment had already been saved in Mail Downloads, and had been un-
quarantined from my previous test. Move that file from ~/Library/Mail
Downloads, then try the email attachment again, and you should see
that it is definitely fixed!<html><body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space; "><div><div>Begin forwarded message:</div><br class="Apple-interchange-newline"><blockquote type="cite"><span class="Apple-style-span" style="border-collapse: separate; color: rgb(0, 0, 0); font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-align: auto; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-border-horizontal-spacing: 0px; -webkit-border-vertical-spacing: 0px; -webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: auto; -webkit-text-stroke-width: 0; ">The email quarantine problem reported by Heise <<a href="http://www.heise-security.co.uk/news/99257">http://www.heise-secur
ity.co.uk/news/99257</a>> has also been fixed.</span></blockquote></div><br><div>I should have mentioned:</div><div><br class="webkit-block-placeholder"></div><div>when I first tried to check if this was fixed, the Heise POC attachment launched without the prompt. This was because the attachment had already been saved in Mail Downloads, and had been un-quarantined from my previous test. Move that file from ~/Library/Mail Downloads, then try the email attachment again, and you should see that it is definitely fixed!</div></body></html>

[ reply ]
Re: Apple OS X Software Update Vulnerability and APPLE-SA-2007-12-17 Dec 18 2007 06:52PM
Kevin Finisterre \(lists\) (kf_lists digitalmunition com) (1 replies)
RE: Apple OS X Software Update Vulnerability and APPLE-SA-2007-12-17 Dec 18 2007 08:21PM
Todd Woodward (todd_woodward symantec com)
RE: Apple OS X Software Update Vulnerability and APPLE-SA-2007-12-17 Dec 17 2007 11:24PM
Todd Woodward (todd_woodward symantec com)


 

Privacy Statement
Copyright 2010, SecurityFocus