CDSA News

Weekend Vulnerability and Patch Report, Sept. 21, 2014 (Citadel Information Group)

Important Security Updates

Adobe Reader: Adobe has released version 11.0.09 to fix at least 8 highly critical vulnerabilities reported in previous versions. Updates are available through the program’s Help menu/Check for Updates or from Adobe’s website. Updates are also available for Adobe Acrobat.

Apple iCloud: Apple has released an update for iCloud for Windows. The update is available through Apple’s website.

Apple iOS: Apple has released version 8 of its iOS for iPhone 4 and later, iPad and iPod touch to fix at least 19 unpatched vulnerabilities, some of which are highly critical, in previous versions. The update is available through the devices or through Apple’s website.

Apple OS X: Apple has released updates for its OS X to fix at least 37 vulnerabilities, some of which are highly critical, reported in previous versions. Update to version 10.9.5 or apply Security Update 2014-004.

Apple Safari: Apple has released updates for Safari to fix at least 8 vulnerabilities, some of which are highly critical, reported in previous versions. Update to version 6.2 or 7.1. Updates are available from Apple’s website.

Apple TV: Apple has released version 7 for Apple TV to fix at least 14 unpatched vulnerabilities, some of which are highly critical, in previous versions. Updates are available through the device or Apple’s website.

Dropbox: Dropbox has released version 2.10.30 for its file hosting program. Updates are available at Dropbox’s website.

Mozilla Firefox: Mozilla has released version 32.0.2. Updates are available within the browser or from Mozilla’s website.

Opera: Opera has released version 24.0.1558.61 to fix multiple moderately critical unpatched vulnerabilities reported in previous versions. Updates are available from within the browser or from Opera’s website.

Current Software Versions

Adobe Flash 15.0.0.152 [Windows 7: IE]

Adobe Flash 15.0.0.152 [Windows 7: Firefox, Mozilla]

Adobe Flash 15.0.0.152 [Windows 8: IE]

Adobe Flash 15.0.0.152 [Macintosh OS X: Firefox, Opera, Safari]

Adobe Reader 11.0.09

Dropbox 2.10.30

Firefox 32.0.2 [Windows]

Google Chrome 37.0.2062.120

Internet Explorer 11.0.9600.17280

Java SE 7 Update 67

QuickTime 7.7.5

Safari 5.1.7 [Windows]

Safari 7.1 [Mac OS X]

Skype 6.20.0.104

For Your IT Department

Cisco Multiple Products: Secunia reports Cisco has released updates for IOSXR and others. Apply available updates.

Apple OS X Server: Apple has released updates for its OS X Server to fix at least 7 moderately critical vulnerabilities, reported in previous versions. Update to version 3.2.1.