Maybe it’s just the skeptic in me, but am I the only one that read Tom Ferris’ security bulletin’s carefully? (See Dan’s post about these advisories.) He had six in total (1, 2, 3, 4, 5, and 6). In the first, he has the very dangerous warning:
and or to execute arbitrary code on a targeted host
However, other entries contain lines like:
and or may allow for an attacker to execute arbitrary code on the targted host
Now, which is it? There is a world of difference between crashing (a minor inconvenience) and arbitrary code execution (very dangerous). If he’s not sure about some, how do we know he’s sure about the rest? Is this all conjecture on his part? Good security dictates that even if there are crashing bugs in an application, it doesn’t lead to the whole system being compromised.
I’d like something a little firmer than an irresponsible may. It’s no wonder all the news outlets jumped all over this.
Update: Dan, doing a little investigative work forwarded me this email from Tom.
Hi Dan,
All of the issues allow arbitrary code execution, besides one of the .TIFF image flaws. As for the BOM issue yes it is exploitable… There are multiple ways of triggering the crash, and controlling memory. Apple has been aware of these issues since the first of the year, and will be releasing a security update very soon. I just wanted to make the public aware of these issues, just incase someone else has found these flaws and maybe taking advantage of them.
Hope this helps..
Tom Ferris Researcher
Ignore the may.
Ch-ch-ch-ch-changes afoot at MacUser
The Macalope Weekly: Leopards and monopolies and DRM! Oh, my!
Apple levels DMCA on iPodhash project
iPod touch users get second classed again with the omission of new Maps features
Apple Pro Applications Update 2008-004 makes your day
iTunes v8.0.2 comes riding on the coattails of iPhone firmware v2.2
MacUser is your source for news, info, and opinion about Apple, the Mac, and the iPod. Our dedicated team of bloggers covers everything that is relevant to Mac users — and, okay, some stuff that’s not quite relevant, but is still a lot of fun.
Leave a comment