tfaz1 said:Safari timeout issue still unresolved. Everyday I meet more and more people sufferning though this bug. Very JV, if you ask me.
Noiseboy said:The KB article says that this is for OS 10.2.8 and 10.3.6 I am running 10.3.5 and it doesn't show up in my software update. I am (sadly) still nervous about installing 10.3.6.
mazola said:But what about the Canadian Security Update?
Expect that to be released yesterday.mazola said:But what about the Canadian Security Update?
MaCaDDiCT21 said:Whats whith all the recent updates? Is there a security threat lurking about?
swissmann said:Too many of these to feel secure. I'm glad they patch them but still wondering.
Toe said:Read the thread before posting, please.
https://forums.macrumors.com/showthread.php?p=1152482#post1152482
Stampyhead said:No known spyware or anything like that that affects Macs.
Appkit
Available for: Mac OS X v10.3.6, Mac OS X Server v10.3.6, Mac OS X v10.2.8, Mac OS X Server v10.2.8
CVE-ID: CAN-2004-1081
Impact: Characters entered into a secure text field can be read by other applications in the same window session
Description: In some circumstances a secure text input field will not correctly enable secure input. This can allow other applications in the same window session to see some input characters and keyboard events. Input to secure text fields is now enabled in a way to prevent the leakage of key press information.
StarbucksSam said:Well as usual, nothing VISIBLE happened, but I'm not a power user like most of you.
Apache
Available for: Mac OS X v10.3.6, Mac OS X Server v10.3.6, Mac OS X v10.2.8, Mac OS X Server v10.2.8
CVE-ID: CAN-2004-1084
Impact: File data and resource fork content can be retrieved via HTTP bypassing normal Apache file handlers.
Description: The Apple HFS+ filesystem permits files to have multiple data streams. These data streams can be directly accessed using special filenames. A specially crafted HTTP request can bypass an Apache file handler and directly access file data or resource fork content. This update modifies the Apache configuration to deny requests for file data or resource fork content via their special filenames. For more information, see this document. Credit to NetSec for reporting this issue.
Peyote said:What was the point of that? Are you the forum's "hall monitor"?
Those are valid questions and concerns, regardless of whether or not you think you already addressed them. Maybe you're wrong. Maybe they didn't understand. Doesn't matter.
tfaz1 said:Safari timeout issue still unresolved. Everyday I meet more and more people sufferning though this bug. Very JV, if you ask me.
Photorun said:What are you? The hall monitor of hall monitors? 😀
But seriously, Toe was commenting about how MaCaDDiCT21's post appeared practically a page in like he/she/it hadn't even read ANY of the previous comments which basically if he had, he wouldn't have asked a the question in the first place. Reality is too many peeps here will read the headline to the thread, hit "reply" to it and ask a question that, chances are, was asked once, maybe six dozen times which just adds to fluff and frustration. A good forum member reads ALL the posts THEN hits reply if there if there's something to say. It's just good courtesy.
😉