billso.com

Bill Sodeman writes about management, mobile computing and information systems

billso.com header image 2

Apple finally fixes its DNS hole

Posted Monday, 22 September 2008, 08:54 HST @704

The latest patch for Mac OS X finally closes a major hole in the operating system’s DNS (domain name system) software. Apple’s description is in this knowledge base article (About the security content of Mac OS X v10.5.5 and Security Update 2008-006 ).

Of course, Apple is late to the party. By early July 2008, Microsoft had a Windows patch ready for distribution, and the major *NIX systems had their own patches ready. This Cnet article called Massive, coordinated DNS patch released has more information about this project, which preceded the public announcements about the flaw.

It’s sad that Dan Kaminsky’s warnings, detailed in a 24 July 2008 Cnet article called Kaminsky (finally) provides DNS flaw details, did not inspire an urgent response form Cupertino. Apple’s July 2008 patch addressed DNS server issues, but left most Mac users without a fix.

There are still other ways to redirect a computer to a bad domain name, of course. Another piece of prevention involves using OpenDNS instead of your ISP’s domain name servers. OpenDNS is free, fast, and provides spellchecking and phishing protection that is better than most PC and Mac security software.

See these articles from the New York Times (Apple Update Finally Fixes Important DNS Bug ) and ComputerWorld (Apple releases Mac OS X 10.5.5, patches nearly 70 bugs) for more details.

Related posts and pages on billso.com

Tags: Apple, DNS, HPU, Linux, mac, malware, Microsoft, network, opendns, security, university, unix, WiFi, Windows
 Print This Print This

0 responses so far ↓

  • Post your thoughts in the form below. Comments may be moderated by our content checking software.

Leave a Comment

What is this?


Liked by

Add a comment on FriendFeed