[Dshield] PDFs and Preview in Mac OS X 10.5--Official Guidance?

Michael forposts at aol.com
Thu Mar 12 17:09:29 GMT 2009


Hi,

I am writing concerning the recent security problems with PDF files  
(JBIG2 buffer overflows).  I did see a post at the SANS Internet Storm  
Center (http://isc.sans.org/diary.html?storyid=5932) that sort of  
hinted that the problem might exist for MacOS X 10.5 Preview, but I am  
wondering if anything has been issued as official guidance for persons  
running OS X (in my case, Leopard, specifically) in terms of a  
mitigation, fix, or workaround.  I do note that Apple released a  
security update in mid February 2009, but further perusal of that  
document (http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html 
) doesn't mention anything to do with PDFs.

I can't avoid PDFs forever.  Are there any mitigations, advisories or  
good alternative PDF readers for Mac?

Michael


More information about the Dshield mailing list