Apple Fixes Bug Revelead At Security Contest
By Max Brenn
13:59, April 17th 2008
4 votes
Vote this story
Apple Fixes Bug Revelead At Security Contest

Last month, we reported about the contest organized by TippingPoint in Vancouver, Canada. During that contest Charlie Miller broke into a MacBook Air in just two minutes by exploiting an unknown vulnerability in Safari Browser. He won a MacBook Air and $10,000.

Yesterday afternoon, Apple issued the version 3.1.1 of Safari to address, amongst other security issue, the vulnerability discovered by Miller.

The update has 39MB and it is available for both versions of Safari, for Windows and for Mac.

In the official description of the update, Apple noted: “CVE-ID: CVE-2008-1026 -

Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5.2, Mac OS X Server v10.5.2, Windows XP or Vista.
Description: A heap buffer overflow exists in WebKit’s handling of JavaScript regular expressions. The issue may be triggered via JavaScript when processing regular expressions with large, nested repetition counts. This may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue by performing additional validation of JavaScript regular expressions. Credit to Charlie Miller for reporting these issues.”

Another two updates, CVE-ID: CVE-2007-2398 and CVE-ID: CVE-2008-1024, were released only for the PC version of Safari. Apple urged all users to patch their Safari.

Safari version 3.1 for Mac OS X and Windows XP/Vista was launched by Apple last month. Safari supports CSS animations, CSS web fonts, and HTML 5 media support, it offers improved SVG support, and HTML 5's offline storage support, among other features.

Apple boasts that Safari loads pages up to 1.9 times faster than Internet Explorer 7 and up to 1.7 times faster than Firefox 2; and it executes JavaScript up to 6 times faster than Internet Explorer 7 and up to 4 times faster than Firefox 2.



© 2007 - 2008 - eFluxMedia
dotclear

Other News in Technology

Apple Is Far Behind In The Environmental Race

Apple Is Far Behind In The Environmental Race

According to Climate Counts, a nonprofit group, Apple trails far behind when it comes to climate friendliness.The environmental group, funded by organic yogurt maker Stonyfield Farm, used publically...

Back To My Mac Helps A Woman To Recover Her Stolen Laptop

Back To My Mac Helps A Woman To Recover Her Stolen Laptop

A Westchester woman has helped the police to recover her stolen laptop after she was able to to connect remotely to her computer and photograph one of the suspects. After one of her friends...

FBI Reveals Government Bought Counterfeit Network Parts

FBI Reveals Government Bought Counterfeit Network Parts

The FBI revealed that the U.S. government has unknowingly bought counterfeit networking parts from China. Authorities have uncovered so far about 3,500 bogus devices with a retail value of $3.5...

AT&T's Free Wi-Fi Announcement: "Human Error"

AT&T's Free Wi-Fi Announcement: "Human Error"

AT&T officially announced free Wi-Fi hotspot access for its iPhone customers on Thursday, after reports surfaced that the service was already available, then deleted the announcement and now says...

Windows XP SP3 Is Not Bug-Free

Windows XP SP3 Is Not Bug-Free

With just a few days from its official release, the Windows XP Service Pack 3 is already receiving a large numer of post-instalation complaints.Apparently, the up-date causes a series of problems,...

dotclear
Latest videos in Technology
Google Docs: Working offline
New features in Google Earth...
Photoshop Express Demo Part 2
Photoshop Express Demo!
Sliver of Silicon with 47...

dotclear
Technology You are here: Technology
» Technology   » Gadgets   » Video Games   
E-mail To A Friend Print RSS Text size: Decrease font size Increase font size
dotclear
dotclear
dotclear
Most Popular in Technology
Windows XP SP3 Is Not Bug-FreeWindows XP SP3 Is Not Bug-Free

» read full story
dotclear

Interested In This Topic?

News Alert will keep you informed. Find out more.
dotclear

Related News

Mac Clones Sold For $399! Will Apple Strike Back?

Mac Clones Sold For $399! Will Apple Strike Back?


iPhone Rumors: Apple Is Preparing 3 Million 3G iPhones For June

iPhone Rumors: Apple Is Preparing 3 Million 3G iPhones For June


Apple Releases New Beta Version of iPhone SDK

Apple Releases New Beta Version of iPhone SDK


dotclear
Today's Latest News
Breast Cancer Parade In PittsburghBreast Cancer Parade In Pittsburgh

» read full story
dotclear