Software Updates

Microsoft Office 2008 sp1

Διάφορες διορθώσεις ενώ προσφέρει καλύτερη διασύνδεση αρχείων μεταξύ διαφορετικών εκδόσεων του Office.
 
Απάντηση: Re: Software Updates

10.5.3 IS OUT........

http://support.apple.com/kb/HT1141

Τι περιλαμβάνει λοιπόν :

General
  • Fixes a font issue that could result in Helvetica Narrow being used in applications instead of Helvetica.
  • Addresses an issue with stuttering video and audio playback in certain USB devices.
  • Resolves stability issues with Word of the Day, iTunes Artwork, and Slideshow screen savers.
  • Fixes an issue in which certain attached hard drives may not show up in the Finder.
  • Addresses an issue with .Mac syncing of Dashboard widgets over multiple Macs that use different screen resolutions.
  • Includes additional RAW image support for several cameras.
  • Improves the accuracy of the Software Update progress bar indicator.
  • Addresses an issue in which Finder may not be available if the computer name is blank in Sharing preferences.
  • Improves Active Directory binding and login.
  • Eliminates a delay when logging in as an Active Directory user in a .local domain.
  • Improves Spotlight searches on a AFP file server volumes.
  • Clients can now change their password at the login window when bound to a Mac OS X 10.4 Open Directory server.
  • Improves Safari reliability when connecting to the Internet through a Microsoft ISA proxy.
Address Book
  • Addresses reliability issues when searching for contacts using built-in search.
  • Resolves issues with mapping addresses that contain an ampersand character (&).

AirPort
  • Improves 802.1X behavior and reliability.
  • Improves reliability when using Time Capsule.
Automator
  • Addresses an issue in which some actions may not work with the "Show When Run" option enabled.
  • Resolves an issue in which the "New iCal Event" action may not work.
  • Resolves an issue that prevents workflows from being saved in the Finder's contextual menu.
  • Fixes reliability issues for Automator scripts that search for files by date.
  • Resolves an issue that prevents workflows from being saved in the Finder's contextual menu.
  • Addresses an issue in which Automator workflows as Finder plugins do not work when the workflow begins with the "Get Selected Finder Items" action.
  • Fixes an issue in which the "Copy Files" action does not reliably work when added from Automator’s warning dialog.
iCal
  • Addresses potential privacy issues by allowing events to be marked as private.
  • Resolves an issue in which the inspector does not show capacity and availability info for conference rooms within a building.
  • Addresses an issue in which the current day could appear in the left-most column of the weekly view.
  • Addresses reliability issues with meeting alarms, invitations and attachments.
  • Resolves issues with reliability when restoring from iCal backups.
  • Fixes accuracy issues with auto-completion, availability data and location names.
  • Resolves an issue in which iCal may send cancellation notices for events in the past after a calendar is deleted.
  • Fixes reliability issues with iCal syncing.
iChat
  • Addresses reliability issues with screen sharing.
  • Resolves an issue in which saved chat transcripts may reported as "still in use" after opening and closing them in iChat.
  • Resolves an issue with group chats not being indexed in Spotlight.
  • Only the last 250 messages of an active chat are saved. Fixed to save unlimited number of lines.
  • Addresses issues with echo cancellation that may occur on portable Macs.
Mail
  • Resolves an issue in which Mail may prevent idle sleep when set to automatically check for new messages every minute.
  • Addresses stability issues that may be encountered when dragging large attachments into an email message.
  • Fixes an issue that could occur if two compose windows are open when dragging a file to the Mail icon in the Dock.
  • Addresses reliability issues when changes are made to a mailbox while offline.
  • Resolves wrapping issues that may be found with consecutive spaces in plain text.
  • Fixes issues with certain web pages appearing garbled when emailed from Safari.
  • Fixes an issue in which the Sent, Drafts, and Outbox mailboxes incorrectly list the "cc" recipients in the "To" column.
  • Addresses reliability issues with attachments added to plain text notes.
  • Fixes reliability issues with authenticated RSS feeds.
  • Resolves an issue in which attaching an alias to an email message may not send the actual file.
Parental Controls
  • Addresses reliability issues with application logging and time limits.
  • Resolves an issue in which Parental Controls may prevent forced sleep.
  • Addresses performance issues with web content filters.
  • Fixes an issue with managed accounts in which iChat transcripts may not be created.
  • Addresses issues with 4-byte files and whitelist.
Spaces
  • Resolves an issue in which switching to a different space and returning back to the original space may reorder the application windows with a different active window.
  • Resolves an issue in which activating an application from the Dock switches to a different space, even if there is a window for that application in the current space.
  • Fixes an issue in which Command-Tab may incorrectly switch to a new space.
  • Addresses reliability issues with Spaces when syncing preferences over .Mac.
Time Machine
  • Includes fixes for Time Machine compatibility with Time Capsule.
  • Resolves certain issues when backing up a portable Mac that is on battery power.
  • Addresses compatibility issues with Aperture 2.
  • Addresses reliability issues when performing a full restore from a Time Machine backup.
  • Fixes an issue in which certain function keys may be disabled after using Time Machine.
  • Fixes a possible alert message that incorrectly states a backup volume does not have enough space.
  • Updates Time Machine to reliably restore attachments and messages in Mail.
VoiceOver
  • Includes Braille Update 1.0 which enables GW Micro, HandyTech, HIMS, Nippon, and Papenmeier Refreshable Braille displays.
  • Addresses an issue with Braille dot 7 and 8 underlining.
  • Fixes an issue in which HTML page anchors may be ignored by the VoiceOver cursor.
  • Fixes an issue that prevented Hot Spots from being used in text areas.
  • Resolves an issue with spell checking in which VoiceOver may only announce the first misspelled word if there are multiple words spelled incorrectly.
 
Digital Camera RAW Compatibility Update 2.1


Λογισμικό για την υποστήριξη των :

  • Canon EOS Digital Rebel XSi/Kiss Digital x2/450D
  • Epson R-D1
  • Leaf AFi 7
  • Leaf AFi 6
  • Leaf AFi 5
  • Pentax K200D
  • Pentax K20D
 
Security Update 2008-003

http://support.apple.com/kb/HT1897

Περιλαμβάνει τα παρακάτω, ενώ λέει στο κάθε θέμα για ποιές εκδόσεις του λειτουργικού είναι διαθέσιμο :
  • AFP Server
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Files that are not designated for sharing may be accessed remotely
    Description: AFP Server did not check that a file or directory to be served was inside a folder designated for sharing. A connected user or guest may access any files or folders for which they have permission, even if not contained in folders designated for sharing. This update addresses the issue by denying access to files and folders that are not inside a folder designated for sharing. Credit to Alex deVries and Robert Rich for reporting this issue.
  • Apache
    Available for: Mac OS X Server v10.4.11
    Impact: Multiple vulnerabilities in Apache 2.0.55
    Description: Apache is updated to version 2.0.63 to address several vulnerabilities, the most serious of which may lead to cross-site scripting. Further information is available via the Apache web site at http://httpd.apache.org. Apache 2.0.x is only shipped with Mac OS X Server v10.4.x systems. Mac OS X v10.5.x and Mac OS X Server v10.5.x ship with Apache 2.2.x. The issues that affected Apache 2.2.x were addressed in Security Update 2008-002 for Mac OS X v10.5.2 and Mac OS X Server v10.5.2.
  • AppKit
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11
    Impact: Opening a maliciously crafted file may lead to an unexpected application termination or arbitrary code execution
    Description: An implementation issue exists in AppKit's processing of document files. Opening a maliciously crafted file in an editor that uses AppKit, such as TextEdit, may cause an unexpected application termination or arbitrary code execution. This update addresses the issue through improved validation of document files. This issue does not affect systems running Mac OS X 10.5 or later. Credit to Rosyna of Unsanity for reporting this issue.
  • Apple Pixlet Video
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Opening a maliciously crafted movie file may lead to an unexpected application termination or arbitrary code execution
    Description: Multiple memory corruption issues exist in the handling of files using the Pixlet codec. Opening a maliciously crafted movie file may cause an unexpected application termination or arbitrary code execution. This update addresses the issue through improved bounds checking.
  • ATS
    Available for: Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Printing a PDF document containing a maliciously crafted embedded font may lead to arbitrary code execution
    Description: A memory corruption issue exists in the Apple Type Services server's handling of embedded fonts in PDF files. Printing a PDF document containing a maliciously crafted font may lead to arbitrary code execution. This update addresses the issue by performing additional validation of embedded fonts. This issue does not affect systems prior to Mac OS X v10.5. Credit to Melissa O'Neill of Harvey Mudd College for reporting this issue.
  • CFNetwork
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Visiting a maliciously crafted website may lead to the disclosure of sensitive information
    Description: An information disclosure issue exists in Safari's SSL client certificate handling. When a web server issues a client certificate request, the first client certificate found in the keychain is automatically sent, which may lead to the disclosure of the information contained in the certificate. This update addresses the issue by prompting the user before sending the certificate.
  • CoreFoundation
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Applications' use of the CFData API in certain ways may lead to an unexpected application termination or arbitrary code execution
    Description: An integer overflow in CoreFoundation's handling of CFData objects may result in a heap buffer overflow. An application calling CFDataReplaceBytes with an with invalid length argument may unexpectedly terminate or lead to arbitrary code execution. This update addresses the issue by performing additional validation of length parameters.
  • CoreGraphics
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Opening a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution
    Description: An uninitialized variable issue exists in CoreGraphics' handling of PDF files. Opening a maliciously crafted PDF file may cause an unexpected application termination or arbitrary code execution. This update addresses the issue through proper initialization of pointers.
  • CoreTypes
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Users are not warned before opening certain potentially unsafe content types
    Description: This update extends the system's list of content types that will be flagged as potentially unsafe under certain circumstances, such as when they are downloaded from a web page. While these content types are not automatically launched, if manually opened they could lead to the execution of a malicious payload. This update improves the system's ability to notify users before handling content types used by Automator, Help, Safari, and Terminal. On Mac OS X v10.4 this functionality is provided by the Download Validation feature. On Mac OS X v10.5 this functionality is provided by the Quarantine feature. Credit to Brian Mastenbrook for reporting this issue.
  • CUPS
    Available for: Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Printing to password-protected printers with debug logging enabled may lead to the disclosure of sensitive information
    Description: An issue exists in the CUPS scheduler's check of the authentication environment variables when debug logging is enabled. This may lead to the disclosure of the username, domain, and password when printing to a password-protected printer. This update addresses the issue by properly validating environment variables. This issue does not affect systems prior to Mac OS X v10.5 with Security Update 2008-002 installed.
  • Flash Player Plug-in
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Opening maliciously crafted Flash content may lead to arbitrary code execution
    Description: Multiple issues exist in Adobe Flash Player Plug-in, the most serious of which may lead to arbitrary code execution. This update addresses the issue by updating to version 9.0.124.0. Further information is available via the Adobe web site at http://www.adobe.com/support/security/bulletins/apsb08-11.html
  • Help Viewer
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11
    Impact: A malicious help:topic URL may cause an unexpected application termination or arbitrary code execution
    Description: An integer underflow in Help Viewer's handling of help:topic URLs may result in a buffer overflow. Accessing a malicious help:topic URL may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue through improved bounds checking. This issue does not affect systems running Mac OS X 10.5 or later. Credit to Paul Haddad of PTH Consulting for reporting this issue.
  • iCal
    Available for: Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Opening a maliciously crafted iCalendar file in iCal may lead to an unexpected application termination or arbitrary code execution
    Description: A use-after-free issue exists in the iCal application's handling of iCalendar (usually ".ics") files. Opening a maliciously crafted iCalendar file in iCal may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue by improving reference counting in the affected code. This issue does not affect systems prior to Mac OS X v10.5. Credit to Rodrigo Carvalho of Core Security Technologies for reporting this issue.
  • International Components for Unicode
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Visiting certain web sites may result in the disclosure of sensitive information
    Description: A conversion issue exists in ICU's handling of certain character encodings. Particular invalid character sequences may not appear in the converted output, and this can affect content filters. Visiting a maliciously crafted web site may lead to cross site scripting and the disclosure of sensitive information. This update addresses the issue by replacing invalid character sequences with a fallback character.
  • Image Capture
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11
    Impact: Accessing a maliciously crafted URL may lead to information disclosure
    Description: A path traversal issue exists in Image Capture's embedded web server. This may lead to the disclosure of local files on the server system. This update addresses the issue through improved URL handling. This issue does not affect systems running Mac OS X v10.5 or later.
  • Image Capture
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11
    Impact: A local user may manipulate files with the privileges of another user running Image Capture
    Description: An insecure file operation exists in Image Capture's handling of temporary files. This could allow a local user to overwrite files with the privileges of another user running Image Capture, or to access the contents of images being resized. This update addresses the issue through improved handling of temporary files. This issue does not affect systems running Mac OS X v10.5 or later.
  • ImageIO
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Viewing a maliciously crafted BMP or GIF image may lead to information disclosure
    Description: An out-of-bounds memory read may occur in the BMP and GIF image decoding engine, which may lead to the disclosure of content in memory. This update addresses the issue by performing additional validation of BMP and GIF images. Credit to Gynvael Coldwind of Hispasec for reporting this issue.
  • ImageIO
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Multiple vulnerabilities in libpng version 1.2.18
    Description: Multiple vulnerabilities exist in libpng version 1.2.18, the most serious of which may lead to a remote denial of service. This update addresses the issue by updating to version 1.2.24. Further information is available via the libpng website at http://www.libpng.org/pub/png/libpng.html
  • ImageIO
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Viewing a maliciously crafted JPEG2000 image file may lead to an unexpected application termination or arbitrary code execution
    Description: An integer overflow in the handling of JPEG2000 image files may result in a heap buffer overflow. Viewing a maliciously crafted JPEG2000 image file may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue through additional validation of JPEG2000 images.
  • Kernel
    Available for: Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: A remote attacker may be able to cause to an unexpected system shutdown
    Description: An undetected failure condition exists in the handling of packets with an IPComp header. By sending a maliciously crafted packet to a system configured to use IPSec or IPv6, an attacker may cause an unexpected system shutdown. This update addresses the issue by properly detecting the failure condition.
  • Kernel
    Available for: Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: A local user may be able to cause an unexpected system shutdown
    Description: A null pointer dereference exists in the kernel's handling of code signatures in the cs_validate_page function. This may allow a local user to cause an unexpected system shutdown. This update addresses the issue by performing additional validation of code signatures. This issue does not affect systems prior to Mac OS X v10.5.
  • LoginWindow
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11
    Impact: Managed Client preferences may not be applied
    Description: This update addresses a non-security issue introduced in Security Update 2007-004. Due to a race condition, LoginWindow may fail to apply certain preferences to fail on systems managed by Managed Client for Mac OS X (MCX). This update addresses the issue by eliminating the race condition in the handling of managed preferences. This issue does not affect systems running Mac OS X v10.5.
  • Mail
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11
    Impact: Sending mail through an SMTP server over IPv6 may lead to an unexpected application termination, information disclosure, or arbitrary code execution
    Description: An uninitialized buffer issue exists in Mail. When sending mail through an SMTP server over IPv6, Mail may use a buffer containing partially uninitialized memory, which could result in the disclosure of sensitive information to message recipients and mail server administrators. This could also potentially lead to an unexpected application termination or arbitrary code execution. This update addresses the issue by properly initializing the variable. This issue does not affect systems running Mac OS X v10.5 or later. Credit to Derek Morr of The Pennsylvania State University for reporting this issue.
  • ruby
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: A remote attacker may be able to read arbitrary files
    Description: Mongrel is updated to version 1.1.4 to address a directory traversal issue in DirHandler which may lead to the disclosure of sensitive information. Further information is available via the Mongrel web site at http://mongrel.rubyforge.org
  • Single Sign-On
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5 through v10.5.2, Mac OS X Server v10.5 through v10.5.2
    Impact: Passwords supplied to sso_util are exposed to other local users
    Description: The sso_util command-line tool required that passwords be passed to it in its arguments, potentially exposing the passwords to other local users. Passwords exposed include those for users, administrators, and the KDC administration password. This update makes the password parameter optional, and sso_util will prompt for the password if needed. Credit to Geoff Franks of Hauptman Woodward Institute for reporting this issue.
  • Wiki Server
    Available for: Mac OS X Server v10.5 through v10.5.2
    Impact: A remote attacker may determine valid user names on servers with the Wiki Server enabled
    Description: An information disclosure issue exists in Wiki Server when a nonexistent blog is accessed. Using the information in the error message, an attacker may deduce the existence of local user names. This update addresses the issue through improved handling of error messages. This issue does not affect systems prior to Mac OS X v10.5. Credit to Don Rainwater of the University of Cincinnati for reporting this issue.
 
Mac OS X Server 10.5.3 Combo Update

Για όσους τρέχουν την έκδοση server του Leopard, τότε η αναβάθμιση αυτή περιλαμβάνει :

http://www.apple.com/support/downloads/macosxserver1053comboupdate.html

- directory service reliability and authenticating new File Sharing connections
- binding and authentication in Active Directory environments
- editing Wiki content in Safari, Firefox and Internet Explorer
- searching with Spotlight in the Finder and on the web
- sending 'Welcome' email messages to users in Server Preferences
- importing users and working with nested groups in Server Preferences
- hosting DHCP services
- supporting private events in iCal
- synchronizing Portable Home Directories
- enabling Software Update Server
- hosting mail services for users with long user names
- preventing mail server database corruption
- propagating password changes to Open Directory replicas
- creating and editing DNS records in Server Admin
- creating augment directory records in Advanced server configuration
- using Managed Preferences when clients are bound to Active Directory
 
Εμένα πάντως μου αρέσει που στο spotlight μπορείς να εκτελείς και αριθμητικές πράξεις!
 
Office 2004 αναβάθμιση 10.5.0

Κυριότερα σημεία :
  • Adds read/write compatibility for Open XML Format (.docx, .xlsx, etc.) files if installed with the Open XML Format Converter
  • Better stability and printing/page setup fixes for Word
  • Better paste compatibility with Office 2008 for all apps
  • Powerpoint fixes for stability with large documents