CBCnews
Story Tools: EMAIL | PRINT | Text Size: S M L XL | REPORT TYPO | SEND YOUR FEEDBACK | Bookmark and Share

Antivirus software flaw exposes Apple computers

Last Updated: Wednesday, February 28, 2007 | 1:59 PM ET

A flaw in security software maker McAfee Inc.'s antivirus program for Apple Inc.'s Mac computers could allow a malicious individual to increase their access privileges on a targeted machine.

The vulnerability in McAfee's Virex software could let an attacker install and run programs — such as a computer virus — on a victim's machine, Danish computer security company Secunia ApS reported in an alert issued Wednesday.

The flaw allows any user on the system to modify or delete the software's configuration file, which means that anyone can define which files should be excluded from a virus scan.

In order to take advantage of the vulnerability, an attacker would need physical access to a targeted machine, prompting Secunia to rate the flaw "less critical" — its second-lowest rating on a five-point scale.

McAfee is aware of the flaw and has issued a patch for Virex 7.7 for Mac OS X, which was been sent to all computers running the software and accepting automatic updates starting Feb. 12. The patch can also be downloaded from McAfee's website. McAfee rates the vulnerability risk "low."

Secunia noted that other versions of Virex may be affected.

The vulnerability was discovered and reported to McAfee by security researcher Kevin Finisterre of Digital Munition / Netragard.

  • This story is now closed to commenting.
Story Tools: EMAIL | PRINT | Text Size: S M L XL | REPORT TYPO | SEND YOUR FEEDBACK | Bookmark and Share
 

Related

Technology & Science Headlines

UN body rejects Zambia ivory sales
A UN conservation meeting has rejected plans from Zambia and Tanzania to sell ivory, a rare victory for environmentalists at the two-week meeting in Doha, Qatar.
Chalk River physicist gone without a trace
In the Ottawa Valley town of Deep River, police are frustrated and the community remains confounded by the mysterious disappearance of a physicist working at the nearby Chalk River Nuclear Reactor.
YouTube, Viacom spat gets dirty
Viacom and Google's YouTube site began airing each other's dirty laundry Thursday, providing a tantalizing peek at the wheeling and dealing that triggered a bitter battle over the copyright laws governing the internet.
Cassini reveals Saturn's raucous rings
New data from the Cassini probe has revealed that Saturn is a turbulent planet with odd weather patterns and constantly shifting rings.
Nintendo guru targets education
The man behind Nintendo says he's working hard to turn the firm's brand of hand-held consoles into educational aids and teaching tools.

Top CBCNews.ca Headlines

Headlines

Historic U.S. health-care bill passes Video
The U.S. House of Representatives has passed a health-care bill that will make coverage possible for 32 million uninsured Americans and end insurance companies' discrimination toward people with existing medical conditions.
Sovereigntists are resisters: Duceppe Video
Bloc Québécois Leader Gilles Duceppe is standing by his remarks likening sovereigntists to Second World War resistance movements.
Afghan officials meet insurgents
A major insurgent group is in Kabul for peace talks with the Afghan government, but an Afghan MP says the international community will need to be flexible if the negotiations are to succeed.
Paralympics close on a high note
The 2010 Paralympic Games came to a close before a crowd of thousands gathered at the celebration plaza in Whistler, B.C. on Sunday night.
U.S. commitment to Israel 'rock solid:' Clinton
U.S. Secretary of State Hillary Rodham Clinton is assuring Israel that the Obama administration's commitment to the security and future of the Jewish state is "rock solid" despite a severe diplomatic spat this month.