Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.
...Can it infect my mac by just double clicking the dmg file and mounted it?
That's possible, if the file format reader (DiskImages.framework or IOHDIXController.kext) has an exploitable bug. That's the reason why OS X mounts disk images outside of the kernel address space, which reduces the exploitability.
 
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.