techPowerUp! Forums

Go Back   techPowerUp! Forums > www.techpowerup.com > News

Reply
 
Thread Tools
Old Nov 16, 2007, 02:04 PM   #1
Jimmy 2004
Eligible for custom title
 
Jimmy 2004's Avatar
 
Join Date: Jan 2005
Location: England
Posts: 5,047 (1.66/day)
Thanks: 134
Thanked 276 Times in 185 Posts
Send a message via MSN to Jimmy 2004

System Specs

Apple Admits to ‘Misleading’ Firewall

Apple has admitted that the firewall in its new Leopard OS X may be misleading to users, after complaints that the “Block all incoming connections” setting was not all that it was made out to be.
Quote:
The ‘Block all incoming connections’ setting for the Application Firewall allows any process running as user “root” (UID 0) to receive incoming connections, and also allows mDNSResponder to receive connections. This could result in the unexpected exposure of network services.
As a result, the company has quickly released a patch to fix this issue, which also fixes a flaw that lets processes running as root through the firewall even if they are added to the list of blocked applications, and an issue which means an application needs to be restarted before changes in firewall settings will take affect for it.

Source: ZDNet.com

Last edited by Jimmy 2004; Nov 16, 2007 at 02:17 PM.
Jimmy 2004 is offline  
Reply With Quote
Old Nov 16, 2007, 02:11 PM   #2
malware
Eligible for custom title
 
Join Date: Nov 2004
Location: Bulgaria
Posts: 5,413 (1.74/day)
Thanks: 78
Thanked 986 Times in 497 Posts
Send a message via ICQ to malware Send a message via MSN to malware Send a message via Skype™ to malware

System Specs

Thanks wiak for this useful story.
__________________
techPоwerUp!
malware is offline  
Reply With Quote
Old Nov 16, 2007, 02:21 PM   #3
newtekie1
Semi-Retired Folder
 
newtekie1's Avatar
 
Join Date: Nov 2005
Location: Indiana
Posts: 17,746 (6.48/day)
Thanks: 780
Thanked 5,114 Times in 3,705 Posts

System Specs

Apple misleading...Never...
__________________

Rig1: System Specs.
Rig2: A8-5600K@4.4GHz / AsRock FM2A75 Pro4 / 8GB Corsair DDR3-1600 9-9-9-24 / HD7560D / Samsung DVD-Burner / 1.5TB WD Green + 3x3TB WD RED in RAID5
Rig3: Athlon X2 4200+ / M4A79 Deluxe / 4GB G.Skill Pi DDR2-800 4-4-4-12 / GT430 / Sony DVD-Burner / 500GB WD
Rig4: Phenom II x6 1605T @ 3.6GHz / Asus M5A99X Evo / 8GB PNY DDR3-1600 9-9-9 / GTX470 & GTX470 / Samsung DVD-Burner / 1.5TB Seagate
newtekie1 is offline  
Crunching for Team TPU More than 25k PPD
Reply With Quote
Old Nov 16, 2007, 04:33 PM   #4
FatForester
500 Posts
 
Join Date: Mar 2007
Posts: 937 (0.41/day)
Thanks: 94
Thanked 155 Times in 139 Posts

System Specs

Silly Apple... ZoneAlarm FTW!
FatForester is offline  
Reply With Quote
Old Nov 16, 2007, 10:32 PM   #5
Ravenas
3500 Posts
 
Ravenas's Avatar
 
Join Date: May 2007
Location: Tennessee
Posts: 3,980 (1.82/day)
Thanks: 387
Thanked 312 Times in 242 Posts

System Specs

Quote:
Originally Posted by Jimmy 2004 View Post
Apple has admitted that the firewall in its new Leopard OS X may be misleading to users, after complaints that the “Block all incoming connections” setting was not all that it was made out to be.

As a result, the company has quickly released a patch to fix this issue, which also fixes a flaw that lets processes running as root through the firewall even if they are added to the list of blocked applications, and an issue which means an application needs to be restarted before changes in firewall settings will take affect for it.

Source: ZDNet.com
I think the title of this post is misleading. Your talking about a flaw/bug in a firewall. This is something Apple fixed after users began to notice this. Title should be changed to something more accurate.
Ravenas is offline  
Reply With Quote
Old Nov 16, 2007, 11:45 PM   #6
b1lk1
500 Posts
 
b1lk1's Avatar
 
Join Date: May 2005
Location: Ontario, Canada
Posts: 640 (0.22/day)
Thanks: 4
Thanked 17 Times in 14 Posts
Send a message via MSN to b1lk1

System Specs

Quote:
Originally Posted by Ravenas View Post
I think the title of this post is misleading. Your talking about a flaw/bug in a firewall. This is something Apple fixed after users began to notice this. Title should be changed to something more accurate.
Yeah, something like:

"Overpriced computer not nearly as safe as we are all expected to believe"
b1lk1 is offline  
Reply With Quote
Old Nov 17, 2007, 12:27 AM   #7
Ravenas
3500 Posts
 
Ravenas's Avatar
 
Join Date: May 2007
Location: Tennessee
Posts: 3,980 (1.82/day)
Thanks: 387
Thanked 312 Times in 242 Posts

System Specs

Quote:
Originally Posted by b1lk1 View Post
Yeah, something like:

"Overpriced computer not nearly as safe as we are all expected to believe"
You expected, not I I've never suspected that any computer connected to the internet is safe
Ravenas is offline  
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On

Forum Jump


All times are GMT. The time now is 04:56 PM.


Powered by vBulletin® Version 3.8.6
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
no new posts