Update addresses security issues in Aperture 2 as well

Nov 11, 2008 08:03 GMT  ·  By

Apple has released iLife Support update 8.3.1, which provides updates for all iLife '08 apps, according to the company. The update is meant to make iLife '08 more stable and a better suite of apps overall through its minor tweaks and fixes. However, Aperture 2 security issues are also addressed with this update, Apple reveals.

iLife '08 users are encouraged to update their software as soon as they get the chance, Apple says. From the company's Support page:

About iLife Support 8.3.1

iLife Support provides system software components shared by all iLife ‘08 applications. This update improves overall stability and addresses a number of other minor issues. It is recommended for all users for iLife ‘08.

Talking about the security content of iLife Support 8.3.1, Apple reveals that viewing a maliciously crafted TIFF image may lead to an unexpected application termination or arbitrary code execution. This is an issue affecting iLife 8.0 or Aperture 2, on Mac OS v10.4.9 through v10.4.11, the company says. The update addresses the issue through proper memory initialization and additional validation of TIFF images, Apple's Support page reveals. Mac OS X 10.5.5 users should be out of harm's way, as these issues have already been addressed in systems running the latest available version of the Mac OS.

Also targeting iLife 8.0 or Aperture 2 users, on Mac OS v10.4.9 through v10.4.11, is another fix, this time addressing the possibility of unexpected application termination or arbitrary code execution by viewing a large maliciously crafted JPEG image. Apple has discovered that “a memory corruption issue exists in ImageIO's handling of embedded ICC profiles in JPEG images... This update addresses the issue through improved processing of ICC profiles.” This issue too has been addressed in Mac OS X 10.5.5.

iLife Support 8.3.1 includes all Apple supported languages. You may download the free update using the link below.

Download iLife Support 8.3.1 (Free)