[X4U] Safari vulnerability test fails

Kansas Territory kansast at mac.com
Thu Dec 9 08:05:15 PST 2004


On Dec 9, 2004, at 9:44 AM, John Azevedo wrote:

> I'm passed the test. Safari 1.2.4 (v125.11), OS X 10.3.6 build 7R28.
> FWIW I don't have the latest Security update (2004-12-02) installed.
>
>

Hmmm..   I failed before, and after the december 2nd security update..

currently running safari
1.2.4 (v125.12)

Kansas



> On Dec 9, 2004, at 10:14 AM, Kansas Territory wrote:
>
>> friend of mine passed me a link on  a
>> test for 'browser window injection vulnerability"
>> turns out Safari it affects Safari as well...  I had hoped the  
>> security update released December 2nd would have fixed it.. but it  
>> didn't.
>>
>> check it out
>>
>> I doesn't do anything malicious .. just demonstrates how someone can  
>> hijack a page like for citibank.com or what ever.
>>
>>
>> http://secunia.com/ 
>> multiple_browsers_window_injection_vulnerability_test/
>>
>> Kansas
>>
>> _______________________________________________
>> X4U mailing list
>> X4U at listserver.themacintoshguy.com
>> http://listserver.themacintoshguy.com/mailman/listinfo/x4u
>>
>
> _______________________________________________
> X4U mailing list
> X4U at listserver.themacintoshguy.com
> http://listserver.themacintoshguy.com/mailman/listinfo/x4u



More information about the X4U mailing list