Apple Releases “Security Update 2007-001”

Apple releases “Security Update 2007-001” to address QuickTime 7.1.3 vulnerability.
http://www.info.apple.com/kbnum/n61798
The update is available for QuickTime 7.1.3 on Mac OS X v10.3.9, Mac OS X Server v10.3.9, Mac OS X v10.4.8, Mac OS X Server v10.4.8, Windows XP/2000.

Security Update 2007-001 (Mac OS X 10.4.8 Universal)4.9MB
Security Update 2007-001 (Mac OS X 10.3.9)2.4MB

From Apple Support:

Security Update 2007-001 is recommended for all users and improves QuickTime security.

Description: A buffer overflow exists in QuickTime’s handling of RTSP URLs. By enticing a user to access a maliciously-crafted RTSP URL, an attacker can trigger the buffer overflow, which may lead to arbitrary code execution. A QTL file that triggers this issue has been published on the Month of Apple Bugs web site (MOAB-01-01-2007). This update addresses the issue by performing additional validation of RTSP URLs.

The update can be obtained through Apple Software Updates (Mac OS X and Windows XP/2000) or Apple Support Downloads page.

Apple Security Update 2007-001

http://www.apple.com/support/downloads/

Continue reading “Apple Releases “Security Update 2007-001””

Spyware Drive-By on MySpace

A friend of mine was reinstalling one of his Windows machine just for the heck of it. For some reason, “Lord Ahriman” from the band “Dark Funeral” came up in our conversations. Google pointed us to “Lord Ahriman” MySpace page and both of us were looking at the page on our own computers. I was using my PowerBook G4 and he was using Internet Explorer on his newly installed Windows OS.

After a while Internet Explorer quit unexpectedly in the middle of Microsoft Update. Naturally, he restarted the computer. Right after that the Windows started acting weird. The “Start Menu” no longer functional, and we couldn’t go to Mozilla homepage.

Upon a brief inspection, we found a suspicious process named “ntsock.exe” running on his system. It turned out to be a spyware. He quickly downloaded AVG Anti-Spyware and managed to remove the spyware. The “Start Menu” finally worked normally, but the system was still unstable. Upon further inspections, we found yet another suspicious process named “username.exe“. It seems to be another piece of spyware.

We’re not really sure how we got the spywares in the first place. By the process of elimination, we concluded that the spywares were delivered through MySpace. It was a spyware drive-by on MySpace.

Anti-Spywares (free versions) for Windows
Spybot: Search & Destroyhttp://spybot.info/
Lavasoft: Ad-Aware Personal Edition SEhttp://www.lavasoft.com/
SpywareBlasterhttp://spywareblaster.info/
Microsoft Defenderhttp://www.microsoft.com/defender/
AVG Anti-Spyware Freehttp://free.grisoft.com/

Wolfenstein: Enemy Territory is available in Mac OS X Universal Binary

Finally, Return to Castle Wolfenstein: Enemy Territory is available in Mac OS X Universal Binary.
One of the best and FREE game out there. Did I say FREE?

The PowerPC version was a resource hog. I’m downloading it right now and will test it later today.

UPDATE:
I’m having trouble connecting to most servers.

From Timothee Besset:

“I hope ETPro and other major ET mods out there can update and support the new Mac client soonish.
Meanwhile you may have a bit of trouble finding servers that will accept this new client
(the best approach may be to use qstat [3] and filter for servers running etmain/,
I haven’t found a good third party server browser for OSX at this point)”

I used to play a lot at Hamsters House Of Fun server.
http://www.ham-clan.com/

Get Return to Castle Wolfenstein: Enemy Territory for Mac OS X Universal Binary here:
http://www.bluesnews.com/cgi-bin/finger.pl?id=476&time=20070115181957

http://www.insidemacgames.com/news/story.php?ID=14582
http://www.macsimumnews.com/index.php/archive/wolfenstein_game_ready_for_mactels/

SlingPlayer for Mac OS X Public Beta2 1.0.1.145 is Available

Previously, I downloaded SlingPlayer for Mac OS X Public Beta2 1.0.1.144 on January 1st 2007 and had a few trouble using it. It required SlingBox firmware upgrade but whenever I launched Slingbox Setup Assistant it always said that it was expired. After a little bit of fiddling around, the SlingPlayer worked without upgrading Slingbox firmware. The Slingbox Setup Assistant still unusable because it’s still expired.

Today I downloaded SlingPlayer for Mac OS X Public Beta2 and the version turned out to be 1.0.1.145. I have yet tried upgrading the Slingbox firmware.

This time I ran the SlingPlayer Uninstaller before installing the latest SlingPlayer. I then launched Slingbox Setup Assistant and it didn’t come up with expiration message. So far, so good. The next thing I need to do next is to upgrade the Slingbox firmware from within the local network.

http://www.slingmedia.com/
http://us.slingmedia.com/object/KB-005161.html
SlingBox Pro @ Amazon
SlingBox AV @ Amazon
SlingBox Tuner @ Amazon

Post CES and MacWorld Blues

Now that CES and MacWorld are over, it’s time to look back.

CES is still a much larger event and yet it was eclipsed by Steve Jobs’ MacWorld Keynote. Once again, Apple stole CES’ thunder. I am still processing and formulating the information overloads from CES and MacWorld.

Let’s see.

MacWorld

  • Apple iPhone, AppleTV, and the new Airport Extreme base station. No real news about Mac OS X, Macs, and other softwares from Apple.
  • ModBook – A tablet Mac.
  • No GPS support on Mac OS X from Garmin
  • …to becontinued

CES

  • XBox 360 HD video and larger hard drive.
  • Something about Windows Vista and its variants.
  • Sling Media’s SlingCatcher.
  • Tons of other products, to be added later.

This will take a while for me to write something interesting regarding CES and MacWorld.

Parallels Desktop for Mac build 3120 RC1 is Released

Parallels Desktop for Mac build 3120 RC1 is available for download
http://forums.parallels.com/thread7585.html

Additional details and download information is available on this page:
http://www.parallels.com/products/desktop/beta_testing/

I will update this post after I actually use it.

Related News:
VMwareFusion Beta is Available for download.
http://www.vmware.com/products/beta/fusion/
Related Product:
Parallels Desktop for Mac

Parallels Desktop for Mac @Amazon.com

Microsoft Releases Updates for Mac Office (01.09.2006)

Microsoft Office 2004 for Mac 11.3.3 Update

This update contains several improvements to enhance security and stability, including fixes for vulnerabilities that an attacker can use to overwrite the contents of your computer’s memory with malicious code. In addition, this update includes all of the improvements released in all previous Office 2004 updates.

Microsoft Office v. X for Mac 10.1.9 Update

This update contains several improvements to enhance security and stability, including fixes for vulnerabilities that an attacker can use to overwrite the contents of your computer’s memory with malicious code. In addition, this update includes all of the improvements released in all previous Office v. X updates.