Apple Updates Macs, iPhones, iPads with Huge Security Patches

Apple has pushed out new versions of its OS X Lion and iOS operating systems, and in the process fixed nearly 175 vulnerabilities that could potentially allow an attacker to seriously compromise users’ computers and mobile devices.

In updating its mobile operating system to iOS 5, Apple most importantly removed the DigiNotar root certificate from the operating system’s list of trusted certificates. The compromised authentication certificates, which were stolen in early September from the Dutch company DigiNotar, sent a ripple through the security world, as an attacker with access to the stolen certificates could easily evade detection, effectively presenting himself as a trustworthy website.

The new operating system for iPhones, iPods and iPads also takes on BEAST, a hack that could allow an attacker to exploit the system’s Transport Layer Security (TLS), common protocol used to keep data secure as it moves between the user and the server. Apple’s updated iOS 5 includes support for the new version of the protocol, TLS 1.2. (Apple has not specified which version of TLS the Mac and PC versions of Safari support.)

Along with tackling the DigiNotar and BEAST problems, Apple’s update mobile operating system addressed several other important vulnerabilities that left features such as Safari, Wi-Fi, Calendar, Numbers, Pages, CoreFoundation, CoreGraphics and ImageIO open to exploitation.

Apple updated its desktop and laptop operating system as well, moving to OS X Lion 10.7.2. The Lion update to the OS “weighs in at a whopping 880 MB,” Chester Wisniewski from the security firm Sophos wrote, and addresses flaws in the operating system’s application firewall and the way it stores and handles Web cookies.

The updated Lion OS X includes several updates to QuickTime, Safari and other programs that could be rigged by an attacker to remotely execute code or gain elevated privileges on an infected system. The updated software is available at Apple’s website; iPad, iPhone and iPod Touch owners need to plug their device into a Mac or PC to initiate their own upgrades.

The installation file size for iOS 5 is no lightweight either — depending on the devices and configurations, it’s between 700 and 770 MB.

Apple’s update servers were overloaded for a period of time yesterday evening (Oct. 12) due to the overwhelming demand from millions of Macs and iDevices.

Article provided by SecurityNewsDaily, a sister site of Laptopmag.com.


LEAVE A REPLY
Name*
Email* (will not be published)
Website
*Indicates required field
Comments*
Submit Comments

FIND A REVIEW
Laptops
All Product Types Accessories Cars Digital Camcorders Digital Cameras eReaders GPS Laptops MP3 & Video Players Projectors Smartphones Software Storage Tablets / MIDs VoIP Wi-Fi
All Subcategories
All Subcategories All-Purpose Budget Business Desktop Replacement Gaming Multimedia Netbook Nettop Rugged Student Tablet PCs Ultraportable
Brand
Acer Alienware Apple Archos ASUS Averatec BenQ CTL Corp. Dell Digital Storm eMachines Emtec Everex Fujitsu GammaTech Gateway General Dynamics Getac Gigabyte Hercules HP HTC iBuyPower Intel Lenovo MSI Nokia Nvidia OCZ OLPC OQO Origin Panasonic Sager Samsung Sony Sylvania Systemax TabletKiosk Toshiba Verizon Viewsonic Viliv VooDoo Workhorse PC ZT Systems
Minimum Rating
Any Rating Editor's Choice 4.5 Stars 4.0 Stars 3.5 Stars 3.0 Stars
Screen Size
10 11 12 13 14 15 16 17 18 20 4 5 6 7 8 9
Resolution
1024x576 1024x600 1024x768 1200X800 1280 x 720 1280x1024 1280x768 1280x800 1366x678 1366x768 1440x1050 1440x900 1600x768 1600x900 1680x1050 1680x945 1920x1080 1920x1200 800x400 800x480
Weight Range
10.1 - 12.0 pounds 12.1 - 14.0 pounds 14.1 - 16.0 pounds 2 lbs 2 pounds and under 2+ lbs 2.1 - 4.0 pounds 4.1 - 6.0 pounds 6.1 - 8.0 pounds 8.1 - 10.0 pounds Over 16 pounds Under 2 pounds
more options
SUBSCRIBE