[Date Prev][
Date Next][Thread Prev][
Thread Next][
Date Index][
Thread Index]
[harden-mac:0680] [security-announce] APPLE-SA-0024$BG/(B09$B7n(B07$BF|(B Security Update 2003$BG/(B09$B7n(B07$BF|(B
- To: harden-mac@xxxxxxxxxx
- Subject: [harden-mac:0680] [security-announce] APPLE-SA-0024$BG/(B09$B7n(B07$BF|(B Security Update 2003$BG/(B09$B7n(B07$BF|(B
- From: "Kogule, Ryo" <kogule@xxxxxxxxxxxxxx>
- Date: Wed, 8 Sep 2004 13:05:20 +0900
---------------------------------------------------------------
$B$3$l$O(B <security-announce@xxxxxxxxxxxxxxx> $B$KEj9F$5$l$?(B
APPLE-SA-2004$BG/(B08$B7n(B09$BF|(B Mac OS X 10.3.5
$B$H$$$&5-;v$NK]Lu$G$9!#$3$N5-;v$O0J2<$n(b URL $B$G8+$k;v$,=PMh$^$9!#(B
<http://lists.apple.com/mhonarc/security-announce/msg00058.html>
$BK\K]Lu$O(B,$BJF9q(B Apple Computer $BJB$S$KF|K\%"%C%W%k%3%s%T%e!<%?$n5v2d(b
$B$rF@$F$$$J$$K]Lu$G$"$j(B,$BK\K]Lu$K4X$7$F(B Apple Computer,$B%"%C%W%k%3(B
$B%s%T%e!<%?$kld9g$;$j$$$h$&$*4j$$cw$7$^$9!#$^$?k]lu2ACf$N$*5RMM$b(B,Mac OS X v10.3.4 $BMQ%;%-%e%j(B
$B%F%#%"%C%W%G!<%h$re,mq$7$f(b,$bi>2A4|4VCf$N%7%9%F%`$N%;%-%e%j%F%#$r9b$a(B
$B$k;v$,=PMh$^$9!#(BMac OS X v10.3.5 $B$X$N%"%C%W%G!<%h8e$o(b,$b$?$h$((b Mac
OS X v10.3.4 $B%7%9%F%`$KBP$7$F(B Security Update 2004$BG/(B09$B7n(B07$BF|(B $B$r0JA0%$(B
$B%s%9%H!<%k$7$f$$$?$h$7$f$b(b,$b:fey(b Mac OS X v110.3.5 $B$K%$%s%9%H!<%k$9(b
$B$kI,MW$,$"$j$^$9!#(B
$B$3$N%;%-%e%j%F%#%"%C%W%G!<%h$o0ja0$n%a%8%c!<%j%j!<%9$g$"$k(b"jaguar"
$B$KBP$7$F$bDs6!$5$l$^$9!#$3$N%;%-%e%j%F%#%"%C%W%G!<%h$n(b Panther $BHG$K(B
$B4^$^$l$k%;%-%e%j%F%#6/2=$G(B Jaguar $B%7%9%F%`$G$b5/$3$j$&$k$b$N$OA4$F(B,
Jaguar $B$KBP$7$F$bDs6!$5$l$F$$$^$9!#(B
$B0J2<$n%3%s%]!<%m%s%h$,99?7$5$l$^$9!#(b
$B%3%s%]!<%m%s%h(b: Apache 2
CVE-ID: CAN-2004-0493, CAN-2004-0488
$BE,MQ@h(B: Mac OS X Server v10.2.8, Mac OS X Server v10.3.4,
Mac OS X Server v10.3.5
$BLdBj$N1F6A(B: $B@x:_E*$J%5!<%s%95qh]$,h/3p$7$?(b
$B8!F$(B: The Apache Organization $B$O(B Apache $B$N%P!<%8%g%s(b
2.0.50 $B$r%j%j!<%9$7$^$7$?!#$3$n%j%j!<%9$o4v$d$+$n%5!<(b
$B%S%95qH]$N@H:3J$r5v2D$5$l$?FC8"$rM?$($i$l$?%W%m%0%i%`$KBP$7(B
$B$F$b(B,$B$3$l$,5/$3$j$($^$9!#(BCoreFoundation $B$r(B,$B4{$KFI(B
$B9~$^$l$?:3J$,@8$8$k%P%C%U%!(B
$B%*!<%p%u%m!<$r0z$-5/$9;v$,=pmh$k(b
$B8!F$(B: $B4D6-JQ?t$rA`:n$9$k;v$G(B,$B%m!<%+%k$n967bZL@=q$N;HMQ;~$K(B,$BG'>Z$5$l$F$$$J$$%[%9%H$,(B IPSec $B@\B3(B
$B$r%M%4%7%(!<%h$g$-$k2dg=@-$,$"$k(b
$B8!F$(B: $B1s3V$N%[%9%H$NG'>Z$K(B X.509 $B>ZL@=q$r;HMQ$9$k$h$&@_Dj$7(B
$B$?>l9g(B,$B>ZL@=q$N>H9g$,<:gt$7$f$b808r49$,cfcg$5$l$^$;$s(b
$B$G$7$?!#(BMac OS X $B$O%G%U%)%k%H$G$O(B IPSec $B$K>ZL@=q$r;H(B
$BMQ$7$F$$$J$$$N$G(B,$B$3$NLdBj$OFH<+$n@_dj$r$*$3$j$c$?>l9g(B
$B$K$N$_1F6A$,$"$j$^$9!#(BIPSec $B$r>H9g$r9T$$(B,$B>ZL@=q$N>H9g(B
$B$K<:gt$7$?>l9g$K$O808r49$rCfCG$9$k$h$&JQ99$7$^$7$?!#(B
$B%3%s%]!<%m%s%h(b: Kerberos
CVE-ID: CAN-2004-0523
$BE,MQ@h(B: Mac OS X v10.2.8, Mac OS X v10.3.4,
Mac OS X v10.3.5, Mac OS X Server v10.2.8,
Mac OS X Server v10.3.4, Mac OS X Server v10.3.5
$BLdBj$N1F6A(B: $BJ#?t$N%P%C%U%!%*!<%p%u%m!<$,(b MIT Kerberos 5 (krb5)
1.3.3 $B$H$=$l0JA0$N(B krb5_aname_to_localname $B$K$"$j(B,
$B1s3V$N967bl9g$K(B
$B$N$_(B,$B%P%C%U%!%*!<%p%u%m!<$rit@5mxmq2dg=$g$9!#(bapple $B$O(B
$B%G%U%)%k%H$G$O$3$N@_Dj$rM-8z$K$7$F$$$^$;$s!#$3$N%;%-%e(B
$B%j%F%#=$@5$r;H$C$F(B Mac OS X $BHG$N(B Kerberos $B$KE,MQ$7$^(B
$B$7$?!#(BMac OS X $B$H(B Mac OS X Server $BHG$N(B Kerberos $B$O(B,
$B:G6a(B CERT $B@HZ$5$l$?1s3V$N967buBV(B
$B8!F$(B: FTP $B%5!<%s%9$,f0$$$f$*$j1s3v$n967bZ$5$l$F$$(B
$B$k>l9g(B,$B6%9g>uBV$K$h$C$F967bZ>H9gJ}K!$G$O(B,$B$3$NCM$r$"$?$+$b%W%l%$%s%F%-%9%H%Q(B
$B%9%o!<%i$n$h$&$k;hmq$9$k;v$,=pmh$^$9!#$3$n=$@5$g$o$3$nn>(B
$B5A@-$ro$K4*9g2=$5$l$?%Q%9%o!<%i$h$9(b
$B$k$h$&$KJQ99$7$F$$$^$9!#$3$NLdBj$O(B Mac OS X 10.2.8 $B$G$O(B
$B5/$j$^$;$s!#$3$NLdBj$NJs9p$O(B Kayak Software Corporation
$B$N(B Steve Revilak $B$K$h$k$b$N$G$9!#(B
$B%3%s%]!<%m%s%h(b: OpenSSH
CVE-ID: CAN-2004-0175
$BE,MQ@h(B: Mac OS X v10.2.8, Mac OS X v10.3.4,
Mac OS X v10.3.5, Mac OS X Server v10.2.8,
Mac OS X Server v10.3.4, Mac OS X Server v10.3.5
$BLdBj$N1F6A(B: $B0-0U$N$"$k(B ssh/scp $B%5!<%p$,%m!<%+%k%u%!%$%k$r>e=q$-$G$-$k(B
$B8!F$(B: scp $B%W%m%0%i%`$N%G%#%l%/%H%j=d2s@He=q$-$r5v$7$F$7$^$$$^$9!#%;(B
$B%-%e%j%F%#=$@5$r;HMQ$7$F(B Mac OS X $BHG$N(B OpenSSH $B$KE,MQ$7$^(B
$B$7$?!#(B
$B%3%s%]!<%m%s%h(b: PPPDialer
CVE-ID: CAN-2004-0824
$BE,MQ@h(B: Mac OS X v10.2.8, Mac OS X v10.3.4,
Mac OS X v10.3.5, Mac OS X Server v10.2.8,
Mac OS X Server v10.3.4, Mac OS X Server v10.3.5
$BLdBj$N1F6A(B: $B0-0U$N$"$kMxMQe=q$-$7(B,$B7k2L$H$7$F(B
$B%m!<%+%k$nfc8">:3J$,5/$k(B
$B8!F$(B: PPP $B%3%s%]!<%m%s%h$o(b,$bc/$b$,=q9~$a$k>l=j$KJ]B8$5$l$?%U%!%$(B
$B%k$K%;%-%e%"$G$J$$%"%/%;%9$r9T$C$F$$$^$7$?!#$3$N=$@5$G%m%0(B
$B%U%!%$%k$rC/$b$,=q9~$a$k>l=j$G$O$J$$$H$3$m$K0\F0$7$^$7$?!#(B
$B%3%s%]!<%m%s%h(b: QuickTime Streaming Server
CVE-ID: CAN-2004-0825
$BE,MQ@h(B: Mac OS X Server v10.2.8, Mac OS X Server v10.3.4,
Mac OS X Server v10.3.5
$BLdBj$N1F6A(B: QuickTime Streaming Server $B$N:F5/F0$rB%$9%5!<%s%95qh](b
$B8!F$(B: $BFCDj$N=g$N%/%i%$%"%s%H$NA`:n$G(B QuickTime Streaming
Server $B$N%G%C%I%m%C%/$,5/$j$^$9!#$3$N=$@5$G%G%C%I%m%C%/>u(B
$BBV$r=|5n$9$k%3!<%i$k99?7$7$^$7$?!#(b
$B%3%s%]!<%m%s%h(b: rsync
CVE-ID: CAN-2004-0426
$BE,MQ@h(B: Mac OS X v10.2.8, Mac OS X v10.3.4,
Mac OS X v10.3.5, Mac OS X Server v10.2.8,
Mac OS X Server v10.3.4, Mac OS X Server v10.3.5
$BLdBj$N1F6A(B: rsync $B$,%G!<%b%s%b!<%i$gf0$$$f$$$k;~$k(b,chroot $B%*%W%7%g%s(B
$B$,@_Dj$5$l$F$$$J$$8B$j(B,$B1s3V$N967bl9g(B,$B@5$7$$%Q%9$N(B
$BE,@52=$r9T$C$F$$$^$;$s!#$3$N=$@5$G$O(B rsync $B$r%P!<%8%g%s(b
2.6.2 $B$K99?7$7$F$$$^$9!#(B
$B%3%s%]!<%m%s%h(b: Safari
CVE-ID: CAN-2004-0361
$BE,MQ@h(B: Mac OS X v10.2.8, Mac OS X Server v10.2.8
$BLdBj$N1F6A(B: $BIi$NBg$-$5$r;}$C$?(B JavaScript $BG[Ns$K$h$j(B,Safari $B$NNN0h30(B
$B%a%b%j$X$N%"%/%;%9$,H/@8$7(B,$B7k2L$H$7$F%"%W%j%1!<%7%g%s$,%/(b
$B%i%C%7%e$9$k!#(B
$B8!F$(B: $BIi$NBg$-$5$r3dEv$F$i$l$?(B JavaScript $BG[Ns$X$N%*%8%e%8%'%/$H(B
$B$N5-21$K$h$j(B,$B%a%b%j$N>e=q$-$,2DG=$G$9!#G[Ns$N3dEv$F$,<:gt$7(b
$B$?>l9g(B,JavaScript $B%W%m%0%i%`$N=hM}$rDd;_$9$k$h$&(B Safari
$B$rJQ99$7$^$7$?!#(B
$B$3$N%;%-%e%j%F%#6/2=$O0JA0(B Safari 1.0.3 $B$G9T$o$l$?$b$N$G(B,
$B$3$N%P!<%8%g%s$n(b Safari $B$r%$%s%9%H!<%k$7$f$$$j$$$*5rmm$kbp(b
$B$7$FFCJL$JJ]8n%l%$%"$H$7$F(B Mac OS X 10.2.8 $B%*%Z%l!<%f%#%s(b
$B%0%7%9%F%`Fb$KE,MQ$5$l$^$9!#$3$l$O(B Mac OS X v10.2.8 $B@lMQ$N(B
$B=$@5$G$"$j(B,Mac OS X v10.3 $B0J9_$N%7%9%F%`$K$O$3$NLdBj$O$"(B
$B$j$^$;$s!#(B
$B%3%s%]!<%m%s%h(b: Safari
CVE-ID: CAN-2004-0720
$BE,MQ@h(B: Mac OS X v10.2.8, Mac OS X v10.3.4, Mac OS X v10.3.5,
Mac OS X Server v10.2.8, Mac OS X Server v10.3.4,
Mac OS X Server v10.3.5
$BLdBj$N1F6A(B: $BB>$N%I%a%$%s$K$h$k;HMQ$,0U?^$5$l$F$$$k%U%l!<%`$k?.mq$5$l$f(b
$B$$$J$$%&%'%V%5%$%H$,FbMF$rCmF~=PMh$k(B
$B8!F$(B: $B@h$K0-0U$"$k%5%$%H$rK,$l$F$$$?>l9g(B,$BJ#?t$N%U%l!<%`$r;hmq$7$f(b
$B$$$kB>$N%&%'%V%5%$%H$K$*$$$F(B,$B$=$N%U%l!<%`$n4v$d$+$r0-0u$"$k(b
$B%5%$%H$NFbMF$K$9$k;v$,=PMh$^$9!#$3$N=$@5$K$h$C$F(B,$B967b$rKI;_(B
$B$9$k?F;R4X78$N5,B'$r6/$$$k$h$&$K$7$^$7$?!#(B
$B%3%s%]!<%m%s%h(b: SquirrelMail
CVE-ID: CAN-2004-0521
$BE,MQ@h(B: Mac OS X v10.2.8, Mac OS X v10.3.4, Mac OS X v10.3.5,
Mac OS X Server v10.2.8, Mac OS X Server v10.3.4,
Mac OS X Server v10.3.5
$BLdBj$N1F6A(B: 1.4.3 RC1 $B0JA0$N(B SquirrelMail $B$G$O(B,$B1s3V$N967b\:YI=<(4x?t$o@5$7$$6-3&%a%'%c%/$r9t$c$f(b
$B$$$J$$$?$a(B,$BNN0h30$X$NFI9~$_$,H/@8$7(B,$B7k2L$H$7$F%/%i%C%7%e$7(B
$B$^$9!#$3$N=$@5$G(B tcpdump $B$r%P!<%8%g%s(b 3.8.3 $B$X99?7$7$F$$$^$9!#(B
================================================
Security Update 2004$BG/(B09$B7n(B07$BF|(B $B$O%7%9%F%`4D6-@_Dj$N%=%U%H%&%'%"%"%C%W%G!<%h(b,
$B$b$7$/$O(B Apple $B$N(B Software Downloads $B%&%'%V%5%$%H$+$iF~http://www.apple.com/support/downloads/
Mac OS X v10.3.5 "Panther" $BMQ(B
=====================================
$B%U%!%$%kL>(B: "SecUpd2004-09-07PanMClient.dmg"
SHA-1 $B%@%$%8%'%9%H(B: aa8bc2d78c37778cca3619f42dafdee5775bc7a6
Mac OS X v10.3.4 "Panther" $BMQ(B
=====================================
$B%U%!%$%kL>(B: "SecUpd2004-09-07PanClient.dmg"
SHA-1 $B%@%$%8%'%9%H(B: a37cd43439f4e82d05d07924101e370d96dc41a9
Mac OS X v10.2.8 "Jaguar" $BMQ(B
=====================================
$B%U%!%$%kL>(B: "SecUpd2004-09-07JagClient.dmg"
SHA-1 $B%@%$%8%'%9%H(B: 6f0ee457b5a729ef68fb50fc55417db400b52365
Mac OS X Server v10.3.5 "Panther" $BMQ(B
=====================================
$B%U%!%$%kL>(B: "SecUpdSrvr2004-09-07PanM.dmg"
SHA-1 $B%@%$%8%'%9%H(B: 8766c93d5675f8d1d9ebec67e80b7a94d16a1858
Mac OS X Server v10.3.4 "Panther" $BMQ(B
=====================================
$B%U%!%$%kL>(B: "SecUpdSrvr2004-09-07PanL.dmg"
SHA-1 $B%@%$%8%'%9%H(B: 7f4674515ff0172a2df9a451240410ac24459753
Mac OS X Server v10.2.8 "Jaguar" $BMQ(B
=====================================
$B%U%!%$%kL>(B: "SecUpdSrvr2004-09-07Jag.dmg"
SHA-1 $B%@%$%8%'%9%H(B: 099290119b6f47d935e8d064c36a90b0ad7acaf8
$B>pJs$O(B Apple Product Security $B%&%'%V%5%$%H$K$b$"$j$^$9!#(B
http://www.apple.com/support/security/security_updates.html
---------------------------------------------------------------
$BK]Lu(B:$B8EJkNC(B <kogule@xxxxxxxxxxxxxx>
# $B$A$c$s$H$7$?(B SA $B$G$9$M!#K]Lu$B!{(B$B$7$m$^$k(B G$B%]%$%s%HL5NAEPO?$G%A%c%s%9E~Mh(B! $B!{(B$B$7$m$^$k(B/
$B"#(B$B$7$+$/(B> 1,000$B1_J,$N%m!<%=%s$*gc$$j*7t$,cja*$g(b500$bl>MM$KEv$?$k(B <$B"#(B$B$7$+$/(B
< \ $B9k2Z>^IJ$bKh7nBgJ|=P(B / >
http://click.freeml.com/ad.php?id=386857
------------------------------------------------------------------[PR]--
<GMO GROUP> Global Media Online www.gmo.jp