Safari 4.0.2 Update Addresses WebKit Issues
Thursday, July 9, 2009 at 11:43AM
drStrangeP0rk in Potential Vulnerabilities, Safari Exploits, Software Update, Updates

WebKit when handling parent objects has a vulnerability which can allow for a maliciously crafted site to conduct a XSS attack. The improvement is in the way the WebKit handles parent objects. Simple Class Dump from Safari 4.0.1In addition numeric character references crafted in a malicious way can corrupt memory leading to unexpected application termination and/or arbitrary code execution. 

 

Article originally appeared on magmatic.com (http://www.magmatic.com/).
See website for complete article licensing information.