toggle

AAPL Stock: 102.5 ( + 0.25 )

Printed from http://www.macnn.com

Apple offers Webcore/Webkit fixes for Tiger, Panther

updated 05:55 pm EDT, Fri June 22, 2007

Apple hardens Mac OS X

Apple today released Security Update 2007-006, addressing security holes in its WebCore and WebKit technologies which directly affect Web browsing under Mac OS X. The security update fixes an HTTP injection issue that exists in XMLHttpRequest when serializing headers into an HTTP request. By enticing a user to visit a maliciously crafted Web page, an attacker could conduct cross-site scripting attacks. A second fix addresses a hole where an invalid type conversion when rendering frame sets could lead to memory corruption, possibly resulting in an unexpected application termination or arbitrary code execution when users visit a maliciously crafted Web page, according to Apple. The company today also released Safari-specific security fixes in a separate update for Safari 3.0.1 Beta users which includes the afore-mentioned updates.




by MacNN Staff

POST TOOLS:

TAGS :

toggle

Comments

  1. Sprocket

    Joined: Dec 1969

    0

    Wow . . . that seemingly

    'simple' little update caused me 8-10 hurs last night having to restore my system back from 10.4.0 to 10.4.9. That patch 'pooched' my Safari 2.0.4 to the point it would disappear upon clicking on a link (weird). I'm good now but wary of future patches. (This happened on my 12" G4 iBook too.)

    - G4 12" PowerBook 2005

  1. Sprocket

    Joined: Dec 1969

    0

    and in conclusion . . .

    due the needless s******* around with Safari 2.0.4 and that 'update', I've just purged 3 machines of it and installed Camino 1.5 (with some UI mods) and WOW -- is it fast! Bye-bye Safari. See you in the Windows-world where 3.02b is working fine for me.

Login Here

Not a member of the MacNN forums? Register now for free.

toggle

Network Headlines

toggle

Most Popular

MacNN Sponsor

Recent Reviews

Kanex KTU10 Thunderbolt to USB 3.0 and eSATA

Apple has never been shy about funky ports -- first it was Apple Desktop Bus, and its own DIN-8 serial port. Following that came FireW ...

Logitech Hyperion Fury mouse

Selecting the correct gaming mouse comes down to finding a device that balances the needs of a user with a price they can afford. Ofte ...

Life n Soul BM211 Bluetooth speaker

Bluetooth speakers aren't only for listening to some music at the park or on a long bus ride, but can also be built with tablets in m ...

toggle

Most Commented