Microsoft urges Safari caution
Posted on 2 Jun 2008 at 10:48
Microsoft is advising users to restrict their use of Apple's Safari browser, until a patch becomes available to plug a potential vulnerability.
Read about Microsoft's latest security slip up on the PC Pro blog here
Safari doesn't require a user to give permission to download certain files, a fact which independent security researcher Nitesh Dhanjani predicted could lead to a "carpet-bombing" attack whereby attackers populate websites with malicious code Safari would automatically download to the desktop.
In a security advisory Microsoft says the flaw is also dependent on a vulnerability in how XP and Vista handle executable files on the desktop. Microsoft says it's not aware of any example of the flaw being exploited, but is working on the issue.
The advisory goes on to suggest, that people "restrict use of Safari as a web browser until an appropriate update is available from Microsoft and/or Apple."
Apple has not responded to our request for comment.
PC Pro's Five Biggest Stories
1. Nvidia launches rival to Intel Atom
2. Adobe does a Google Docs with new online suite
3. Microsoft cuddles up to Facebook once more
4. Go back to your websites and prepare for IE8
5. Low-cost laptops set to dominate Computex
Author: Stuart Turton
advertisement
- Microsoft shows courage at Tech-Ed 09
- PowerPoint and Silverlight: a perfect match?
- Why all the fuss over Windows Explorer?
- Your iPhone has a virus? Well it's your fault
- Motorola pays Lucas for its Droid
- Where are the killer apps for Windows?
- Will you hit the Orange iPhone "unlimited" cap?
- USB 3 first benchmark - it's here, and it's fast
- Why Windows 7 has forced me to worry about security
- How Dixons is (under)selling Windows 7
- The bulletproof Dell that costs an arm and a leg
- Microsoft Office 2010 Technical Preview: Q&A
- Lawnmowers, the TyTN II and one odd insurance request
- There'll never be a bulletproof OS
- How far can we trust apps?
- Five nice touches in Outlook 2010
- Building a better Google
- Beware HP's horrendous printer-driver glitch
- Microsoft debuts free Morro antivirus package
- Getting started with Search Server 2008 Express
advertisement

Printed from www.pcpro.co.uk

