Madrid, November 23, 2007 – A vulnerability has been reported in Leopard, Apple’s new operating system. The flaw affects iChat, Apple’s instant messaging system, and the Safari browser. This vulnerability had been already solved in March, in a security patch for Tiger, Leopard’s predecessor.
The security problem can be exploited to infect users by sending emails which include specially crafted JPG images with ‘hidden’ executable files. This way, when the photo is opened, users run the file with the malicious code and the machine is infected.