[MACEP] New at ftp.mesd--Safari 3.1

John Bromley the.bromleys at verizon.net
Tue Mar 18 17:27:02 PDT 2008


The following files are new or updated in the /pub/mac directory of  
the FTP server located at:
  ftp://ftp.mesd.k12.or.us/pub/mac/.

Safari 3.1
ftp://ftp.mesd.k12.or.us:21//pub/mac/Safari31UpdTiger.dmg
ftp://ftp.mesd.k12.or.us:21//pub/mac/Safari31UpdLeo.dmg

Apple posted a Safari 3.1 update today to improve "stability,  
compatibility [and] JavaScript performance" and patch a bunch of  
security holes:

A remote attacker may be able to cause an untrusted certificate to  
appear trusted
A malicious proxy server may spoof secure websites
Visiting a maliciously crafted website may result in cross-site  
scripting
Using Web Inspector on a maliciously crafted website may result in  
cross-site scripting
Using Kotoeri reverse conversion on a password field displays the  
password
Visiting a maliciously crafted website may result in cross-site  
scripting using Java
Visiting a maliciously crafted website may lead to an unexpected  
application termination or arbitrary code execution
Apple's press release points out additional features in the new version:

Safari 3.1 is the first browser to support the new video and audio  
tags in HTML 5 and the first to support CSS Animations. Safari also  
supports CSS Web Fonts, giving designers limitless choices of fonts  
to create stunning new web sites.



-- 
John Bromley
(503) 668-3332

"Even if you're on the right track, you'll get run over if you just  
sit there." -----  Will Rogers



-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.mesd.k12.or.us/pipermail/macep/attachments/20080318/675d81de/attachment.html


More information about the MACEP mailing list