2007/02/15

More Fixes for MOAB From Apple

Today, Apple released Security Update 2007-002, which addresses 4 bugs from the Month of Apple Bugs.

The issues fixed:
  1. CVE-ID: CVE-2007-0197 (aka MOAB-09-01-2007)
  2. CVE-ID: CVE-2007-0614, CVE-2007-0710 (aka MOAB-29-01-2007)
  3. CVE-ID: CVE-2007-0021 (aka MOAB-20-01-2007)
  4. CVE-ID: CVE-2007-0023 (aka MOAB-22-01-2007)

It has been very funny to watch people on all sides, which from my perspective includes the people arguing about disclosure (for/against), the Mac fanboy clubs, and uh, I guess everyone else. People argue, "Disclosure helps," or, "Disclosure hurts," or, "Owww I'm a mac fanboy developer and there are no bugs! A crash != pwnage."

In the end, the bugs are patched (?), so this is good. I personally am going to be testing these patches to see how they fare.

No comments: