Sparkle vulnerability and list of safe apps

Published on February 15, 2016 in Posts
Read time: 1 min
Tags:

Update (February 19, 2016)

Added to list of safe apps.

Many OS X apps use Sparkle as update library.

Recently a vulnerability in the software has been discovered. Affected apps are those using a vulnerable version of Sparkle on an unencrypted HTTP connection to receive data from their update servers. Those apps are subject to man-in-the-middle attacks that could install malicious code.

You can read more about this security issue on ArsTecnica.

List of safe apps

In alphabetical order, the minimum safe versions of apps using Sparkle.

App name / Safe since / Notes

Post constantly updated as I discover new safe versions.


Related links

Comments

Have something to say? Let me know!

Curious about where the comments section is?