On TechRepublic: Windows 7: Slower to boot than Vista?
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 1 of 25:
Next »
Flash, Java, libxml vulnerabilities highligh Apples systemic problem
Once again information about vulnerabilities
have been readily available for anyone who
wishes to exploit them.

An attacker only needs to look up popular 3rd
party products in Apples stack and compare
versions against the latest from the vendor.
Any version discrepancy reveals potential open
security holes where detailed vulnerability-
and exploit info is readily available.

The problem is one of logistics. Apple
assembles the OSX stack from a multitude of
sources. They cannot control where, how and
when these products are patches and
vulnerability information is revealed. On the
other hand they cannot rush to patch each and
every time.

Apple (and their customers) have to live with
the fact that, compared to a truly proprietary
stack, more often than not vulnerability
information leaks before they can push the
patch through coding/testing/QA.

In other words, it is inherent that OS X have
more high-risk days (days between vulnerability
information in the open and until patch is
available).
Posted by: honeymonster   Posted on: 09/03/09 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

Flash, Java, libxml vulnerabilities highligh Apples systemic problem  honeymonster | 09/03/09
But none of these count  NonZealot | 09/03/09
Hateboi plenary meeting  HerbertH_02 | 09/03/09
and so what  pupkin_z | 09/03/09
It means that...  zkiwi | 09/03/09
Some questions  Lester Young | 09/04/09
A few answers  HerbertH_02 | 09/04/09
More importantly...  914four | 09/07/09
You wrote that?  xuniL_z | 09/08/09
I guess I should have been scared yesterday  DannyO_0x98 | 09/03/09
Not really the case  Richard Flude | 09/03/09
Richard Richard Richard  tonymcs@... | 09/03/09
tony, tony tony  rpmyers1 | 09/03/09
rpmeyers, rpmeyers, rpmeyers....  mgp3 | 09/04/09
!?  shis-ka-bob | 09/03/09
Well said!  914four | 09/07/09
but the number of high-risk days is zero!  shis-ka-bob | 09/03/09
Here is your evidence  honeymonster | 09/04/09
It is much worse: Tiger users a *still* vulnerable  honeymonster | 09/04/09
Nobody pays for a service pack  goff256 | 09/04/09
That's just the Apple marketing scam.  trance2tec | 09/07/09
re:That's just the Apple marketing scam  robertleeking@... | 09/07/09
Apple is turning in to a PC  Randalllind | 09/07/09
RE: Apple plugs 15 Java for Mac security holes  robertleeking@... | 09/07/09
After all...  honeymonster | 09/08/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
  • Smart Tech Expert advice on innovations in healthcare and the green technologies that make it happen. Find out more
  • Smart Business Discussion and advice on management issues that revolve around making your world smarter and more useful. More Smart Advice
  • Smart People The best and worst moves in the management and strategy trenches. Learn More