This article originally appeared in TidBITS on 2014-10-23 at 8:58 a.m.
The permanent URL for this article is:
Include images: Off

Security Update 2014-005 (Mountain Lion and Mavericks)

by Agen G. N. Schmitz

Apple has released Security Update 2014-005 with a Secure Transport-related fix for OS X 10.8 Mountain Lion and 10.9 Mavericks. The Security Update patches the so-called POODLE vulnerability [1] that could enable an attacker to decrypt data protected by SSL. Plus, the security update includes the contents of OS X Bash Update 1.0, bringing the Bash patches to everyone (see “Apple Updates Bash for the Shellshock Vulnerability [2],” 29 September 2014). It’s available via Software Update or via direct download from Apple’s Support Downloads Web site. (All updates are free. For 10.8 Mountain Lion [3], 152 MB; for 10.9 Mavericks [4], 6.8 MB.)