Re: MacOS X SoftwareUpdate Vulnerability

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thu, Jul 11, 2002 at 09:31:27AM -0500, Corey J. Steele wrote:
> What about modifying the search order of `lookupd` and telling it to use
> /etc/hosts and then using an entry in /etc/hosts to statically identify
> swquery.apple.com?  Might be a viable work-around?

Then I arp flood your router and spoof the IP address.

Updates must at least be checksummed and really ought to be
cryptographically signed. Period.

-- 
gabriel rosenkoetter
gr@eclipsed.net

Attachment: pgp00168.pgp
Description: PGP signature


[Index of Archives]     [Linux Security]     [Netfilter]     [PHP]     [Yosemite News]     [Linux Kernel]

  Powered by Linux