Change Log
Accattatevelo.....
![Wink ;) ;)](https://cdn.jsdelivr.net/joypixels/assets/8.0/png/unicode/64/1f609.png)
274 Mb approssimativamente per che ha gia' la versione precedente; (759 Mb per il Combo .....
![Roll Eyes :rolleyes: :rolleyes:](https://cdn.jsdelivr.net/joypixels/assets/8.0/png/unicode/64/1f644.png)
)
Apple today released Mac OS X 10.5.8 for both consumer and server versions of Leopard via Software Update.
The 10.5.8 Update is recommended for all users running Mac OS X Leopard and includes general operating system fixes that enhance the stability, compatibility and security of your Mac, as well as specific fixes for:
- compatibility and reliability issues when joining AirPort networks.
- an issue that could cause some monitor resolutions to no longer appear in Displays System Preferences.
- issues that may affect Bluetooth reliability.
For detailed information on this update, please visit this website: http://support.apple.com/kb/HT3606.
For information on the security content of this update, please visit: http://support.apple.com/kb/HT1222.
Security Fix
http://support.apple.com/kb/HT3757
Security Update 2009-003 / Mac OS X v10.5.8
CVE-ID: CVE-2008-1372
Impact: Decompressing maliciously crafted data may lead to an unexpected application termination
CFNetwork
CVE-ID: CVE-2009-1723
Impact: A maliciously crafted website may control the displayed website URL in a certificate warning
ColorSync
CVE-ID: CVE-2009-1726
Impact: Viewing a maliciously crafted image with an embedded ColorSync profile may lead to an unexpected application termination or arbitrary code execution
CVE-ID: CVE-2009-1727
Impact: Users are not warned before opening certain potentially unsafe content types
Dock
CVE-ID: CVE-2009-0151
Impact: A person with physical access to a locked system may use four-finger Multi-Touch gestures
Image RAW
CVE-ID: CVE-2009-1728
Impact: Viewing a maliciously crafted
Canon RAW image may lead to an unexpected application termination or arbitrary code execution
ImageIO
CVE-ID: CVE-2009-1722
Impact: Viewing a maliciously crafted OpenEXR image may lead to an unexpected application termination or arbitrary code execution
ImageIO
CVE-ID: CVE-2009-1721
Impact: Viewing a maliciously crafted OpenEXR image may lead to an unexpected application termination or arbitrary code execution
ImageIO
CVE-ID: CVE-2009-1720
Impact: Viewing a maliciously crafted OpenEXR image may lead to an unexpected application termination or arbitrary code execution
ImageIO
CVE-ID: CVE-2009-2188
Impact: Viewing a maliciously crafted image may lead to an unexpected application termination or arbitrary code execution
ImageIO
CVE-ID: CVE-2009-0040
Impact: Processing a maliciously crafted PNG image may lead to an unexpected application termination or arbitrary code execution
Kernel
CVE-ID: CVE-2009-1235
Impact: A local user may obtain system privileges
launchd
CVE-ID: CVE-2009-2190
Impact: Opening many connections to an inetd-based launchd service may lead to a denial of service
Login Window
CVE-ID: CVE-2009-2191
Impact: A format string issue in Login Window may lead to an unexpected application termination or arbitrary code execution
MobileMe
CVE-ID: CVE-2009-2192
Impact: Signing out of MobileMe does not remove all credentials
Networking
CVE-ID: CVE-2009-2193
Impact: Receiving a maliciously crafted AppleTalk response packet may lead to arbitrary code execution with system privileges or an unexpected system shutdown
Networking
CVE-ID: CVE-2009-2194
Impact: A local user may cause an unexpected system shutdown
XQuery
CVE-ID: CVE-2008-0674
Impact: Processing maliciously crafted XML content may lead to arbitrary code execution
http://www.tomshw.it/news.php?newsid=19189