toggle

AAPL Stock: 562.29 ( -3.03 )

Safari 3.01 for Windows fixes security flaws

updated 09:20 am EDT, Thu June 14, 2007

Safari 3.01 for Windows


Apple has released Safari 3.01 for Windows, an update to the public beta that was announced earlier this week. The browser, now available for Windows XP and Vista, is based on the same WebKit foundation as the Mac and iPhone version. Although specific details of the update were not provided via Apple's security website, the release comes on the heels of criticism of Apple by researchers who claim to have found more than 18 security flaws in the Safari browser within a few days of its release.

The updated Safari download is not specifically noted on Apple's website, but it is available via the Apple Software update on Windows or via Apple's website. According to Macworld, the security improvements in Safari Beta 3.0.1 include a correction for a "command injection vulnerability," remedied with additional processing and validation of URLs that could otherwise lead to an unexpected termination of the browser; an out-of-bounds memory read issue; and a race condition that can allow cross-site scripting using a JavaSscript exploit. The report said that these flaws do not affect the Mac version.


by MacNN Staff

toggle

Comments

  1. jpellino

    Fresh-Faced Recruit

    Joined: Oct 1999

    0

    maybe now...

    ...Maynor will play nice. Apple fixed these in near-record time. Perhaps he, and the MOAB couple can stop throwing tantrums and be more professional. We'll see.

    I'm sick of self-proclaimed security experts acting like skateboarders who just went thru your plate glass window and then shrug and tell you it was your fault for not having safety glass.

  1. dws

    Forum Regular

    Joined: Apr 2001

    0

    Maynor...

    ...will never play nice; especially now that he is getting so much attention from his claim that he intends to hack the iPhone.

  1. testudo

    Fresh-Faced Recruit

    Joined: Aug 2001

    0

    Re: maynor

    BTW, they announced the bugs but did not disclose them. Not sure what isn't 'playing nice' in that regard.

    And if it was anyone else, you wouldn't be able to wait for someone to hack it so you could add your own software and the like.

  1. hayesk

    Professional Poster

    Joined: Sep 1999

    0

    re: maybe now

    While a bit sensationalistic, a security firm should be announcing but not disclosing bugs (except to Apple).

  1. rtbarry

    Fresh-Faced Recruit

    Joined: Aug 2001

    0

    "security firms"...

    are often just the guy from the SouthPark WoW episode.

  1. Sprocket

    Fresh-Faced Recruit

    Joined: May 2002

    0

    its all about the 'ttude

    jpellino: "I'm sick of self-proclaimed security experts acting like skateboarders who just went thru your plate glass window and then shrug and tell you it was your fault for not having safety glass."

    Oh yeah, you nailed it. It's all about the 'ttude . . . and I'm sick of him and his lot too.

Login Here

Not a member of the MacNN forums? Register now for free.

 
close
Photo
toggle

Network Headlines

toggle

Most Popular

MacNN Sponsor

Recent Reviews

iHome iW2 AirPlay speaker

iHome generally isn't known as a luxury brand when it comes to audio, but it is prolific -- the company's docks and speakers are every ...

Logitech Ultrathin Keyboard Cover

One of the iPad's main weaknesses has always been productivity. It's not a question of apps; while it has taken a little time for a na ...

Logitech UE Air Speaker

If maybe a little more slowly than Apple would like, AirPlay is becoming a staple of the wireless speaker market for iOS devices. The ...

toggle

Most Commented