June 17, 2007
8:21 am

Security researcher Robert Swiecki, who two days ago disclosed a URL vulnerability within the new Safari 3.0 for Windows beta, has another. The new flaw requires a user to visit a specially crafted Web page. There, an attacker can write whatever name in the URL toolbar and fill the client browser window with arbitrary content. He provides an example (link should be viewed within Safari).

In response to other Safari 3.0 vulnerabilities, Apple yesterday released an updated version that addresses three of the public vulnerabilities. Swiecki says he tested this latest vulnerability on Safari 3.0.1 (522.12.12) running Windows 2003 SE SP2.

Source:? C|Net

Apple, Safari for Windows, URL, URL Flaw, Bug, Vulnerability

Loading

Contextual Related Posts:

No followup yet

Leave a Response

Comment Preview
« Lotus To Microsoft Migration Tool OfferedWindwos Vista: Recovery Command Prompt »
Feed Icon

Subscribe via RSS or email: