Slashdot Mirror


Safari 3 Beta Updated, Security Problems Fixed

Llywelyn writes "Apple has released an update to the Windows Safari 3 Beta. According to Macworld the updates '...include correction for a command injection vulnerability, corrected with additional processing and validation of URLs that could otherwise lead to an unexpected termination of the browser; an out-of-bounds memory read issue; and a race condition that can allow cross-site scripting using a JavaSscript [sic] exploit.' It is available through either the Apple Safari download site or through Apple's Software Update."

2 of 302 comments (clear)

  1. Re:I dont care what you say by Baricom · · Score: 5, Interesting

    I think the reason's pretty simple: companies like Google have been abusing the "beta" moniker lately. The betas I've seen from Apple (including Safari and earlier, Quicktime 7) have been more consistent with what I would consider a beta: they mostly work and are useful for testing, but still have significant problems.

    Perhaps what they might have done is require an Apple Developer Connection account to download instead of making it available through general release.

  2. I disagree by WrongSizeGlass · · Score: 5, Interesting

    As someone mentioned a couple of days ago when Win Safari was first released, they're also going to have to work really hard for this software to compete with other browsers (which many think it can't). I may be wearing my ass as a hat, but I honestly don't see Apple expecting Safari to compete in the Windows browser market. It is my (potentially asshattian) opinion that Safari is available on Windows solely for the purpose of providing a testing environment for iPhone development for Windows developers. It's never going to take over the Windows browser market (or even made a serious dent).

    Having Safari available on Windows removes the 'Apple Only' hardware requirement for any company who wants to develop Web 2.0/AJAX applications that run on the iPhone which opens Safari development to a much much larger pool of developers.