Jump to content

Security Update 2006-008 Available


Colonel

Today, Apple released a new security update for Mac OS X 10.4.8 and Mac OS X 10.4.8 Server. The update fixes security issues with QuickTime for Java and Quartz Composer. Apple gives us the following description about the update:

Description: Java applets may use QuickTime for Java to obtain the images rendered on screen by embedded QuickTime objects and upload them to the originating web site. When this facility is used in conjunction with Quartz Composer, it becomes possible to capture images that may contain local information. This update addresses the issue by disallowing Quartz Composer compositions in unsigned Java applets. Quartz Composer compositions continue to function locally. Applications and signed Java applets that utilize QuickTime and QuickTime for Java are unaffected. This issue does not affect systems prior to Mac OS X v10.4. It also does not affect the Windows platform. Credit to Geoff Beier for reporting this issue.

As usual, the update is available though Software Update and Apple's documentation site.


User Feedback

Recommended Comments



so far seems ok, but it has messed up safari... all pages load with each line of text too close to the next

You must be running SSE2. The 2006-007 (not 2006-008) security update installs a new Webkit that causes this problem on SSE2. You need to extract the older Webkit.framework from the 10.4.8 Combo Update using Pacifist and install it to your system.

Link to comment
Share on other sites

Installed the 007, 008, itunes 7.02 and quicktime 7.1.3 update, and now my finder doesn't work anymore. What can I do about it? I'm runing semthex kernel on AMD sse3. I can run programs trough spotlight, but not trough finder.

 

Ok forgive my stupidity, 2006-007 update shouldn't have been applyed to AMD. But I used myzars patcher and it works again now, thank myzar!

Edited by PascalW
Link to comment
Share on other sites

Installed the 007, 008, itunes 7.02 and quicktime 7.1.3 update, and now my finder doesn't work anymore. What can I do about it? I'm runing semthex kernel on AMD sse3. I can run programs trough spotlight, but not trough finder.

 

Ok forgive my stupidity, 2006-007 update shouldn't have been applyed to AMD. But I used myzars patcher and it works again now, thank myzar!

 

 

Can you direct me/us to myzars patcher that you are referring to? Thanks

Link to comment
Share on other sites



×
×
  • Create New...