Security update for Software Update

Jump to First Reply
Posted:
in macOS edited January 2014
<a href="https://depot.info.apple.com/security7-12/"; target="_blank">via https</a>



<a href="http://docs.info.apple.com/article.html?artnum=75304"; target="_blank">via http</a>



[quote]Verifying the Checksum



How to verify the checksum of this download

Important: This section is optional, it is being provided for those individuals who want to verify the authenticity of this update.



Generate a checksum for the Software Update application



a) Open Terminal

b) Type the following at the terminal prompt: /usr/bin/openssl sha1 [full path to file]

Example: /usr/bin/openssl sha1 /Users/Documents/SecurityUpdate7-12-02.dmg



The checksum is displayed as: sha1 ([full path to the file])= [checksum amount]

Example: SHA1(/Users/test/Documents/Security Update 7-12-02.dmg)=2c039c683b7001defc35f93ba1f68db3e33e41fc



The file to checksum is SecurityUpdate7-12-02.dmg



The SHA1 checksum of the Software Update client is



2c039c683b7001defc35f93ba1f68db3e33e41fc <hr></blockquote>

Comments

  • Reply 1 of 3
    eugeneeugene Posts: 8,254member
    I guess if someone has spoofed DNS along the way and sent you to a fake Apple.com, the checksum wouldn't even matter because it would be fake.
     0Likes 0Dislikes 0Informatives
  • Reply 2 of 3
    spartspart Posts: 2,060member
    Thank God they got the damn security hole fixed so quick...and before another update to X.
     0Likes 0Dislikes 0Informatives
  • Reply 3 of 3
    eugeneeugene Posts: 8,254member
    I wish Apple would post checksums for all their installer packages on the web, old and new...at least the new, but somehow I have this feeling they've only included the checksum for this one update only and it's not going to be repeated down the road unless Apple gets blasted again for such a bad security exploit.



    I guess that's one incentive to use the Software Update app for your updates since it uses a cryptographic sig.
     0Likes 0Dislikes 0Informatives
Sign In or Register to comment.