RSS RSS Twitter Twitter
macnn

01/13/2009, 10:10am, EST

Tuesday, January 13th

Safari RSS vulnerability affects Mac, Windows users

A vulnerability in both the Mac and Windows versions of Safari may present serious privacy concerns, says coder Brian Mastenbrook. The problem, said to have been confirmed by Apple, is specifically related to the application's built-in RSS reader, which may be exploitable to read the contents of a person's hard drive. The exploit is triggerable by visiting a malicious website, and could in theory allow access to items like e-mail and passwords.

The only Macs vulnerable are said to be those using Mac OS X Leopard, but the threat must then be averted by picking a new RSS reader from Safari's Preferences menu; simply avoiding Safari or even RSS feeds may not provide security. Windows users can simply turn to an alternate browser, such as Opera or Firefox.

Apple is said to have provided no information so far on when patches for the problem might be released.


Filed under: security, software
Other story tags: Safari, browsers

, , 3comments, del.icio.us, slashdot, digg, buzz , Twitter



3 comments
Reader Reactions (Please use <i></i> for italic text)

subscribe to comments
for this article




Expand All   Global Settings
dru

Omniweb?

1
01/13, 10:56am, EST

Would Omniweb be immune or is it also effected? The site doesn't say.

Senior User
Joined Apr 2002
User is offline
dru

RSS screensavers?Omniweb?

1
01/13, 10:59am, EST

Would Omniweb be immune or is it also effected? The site doesn't say. It doesn't mention the RSS screen savers either.

Senior User
Joined Apr 2002
User is offline

omniweb

1
01/13, 2:24pm, EST

I would think it would be affected, because the way it is implied in the article, it somehow magically can still cause problems even if you don't use Safari (how in the hell that is brings up more questions).

Fresh-Faced Recruit
Joined Aug 2001
User is offline
Your Comments

In order to post comments: If you are a registered member, please login with your MacNN Forums username and password otherwise please uncheck the checkbox below.


Registered Member?
macnn forums login:

macnn forums password:

Not a member of the MacNN forums? Register now for free.

RSS Feeds

Have the latest content delivered to your desktop via RSS. Use the links below to get access to a specific blog, news, or reviews feed.



  MacNN -all

  MacNN Reviews

  MacNN Podcasts

  iPodNN

  Electronista

  Left Lane News
Want To Sell Your Laptop? Any Condition - receive Top Cash. Get an instant quote. Free shipping www.CashForLaptops.com

Internet Marketing School - 100% Online: Master SEO, SEM, E Commerce, Media & More with a U of San Francisco Certificate.

Buy from The Apple Store, iTunes.com, Amazon.com, TechDepot, OfficeDepot, Computers4Sure, or donate.