Apple Releases Security Update 2009-004
Posted 08/13/2009 at 12:40am
| by Arvind Srinivasan

Fire up Software Update, because Apple has pushed through Security Update 2009-004. What does this update do, you might ask? Well, in the wonderfully concise words of Apple Support:
"A logic issue in the handling of dynamic DNS update messages may cause an assertion to be triggered. By sending a maliciously crafted update message to the BIND DNS server, a remote attacker may be able to interrupt the BIND service. The issue affects servers which are masters for one or more zones, regardless of whether they accept updates. BIND is included with Mac OS X and Mac OS X Server but it is not enabled by default. This update addresses the issue by properly rejecting messages with a record of type 'ANY' where an assertion would previously have been raised."
To paraphrase, bad people will mess with your internets if you don’t install this update.
Happy Downloading!