1. Home
  2. Computing & Technology
  3. Web Browsers
photo of Scott Orgera

Scott's Web Browsers Blog

By Scott Orgera, About.com Guide to Web Browsers

Critical Vulnerabilities Found in Safari for Windows

Wednesday March 26, 2008

Released early last week, Safari for Windows has already made a great deal of noise, not all of it positive. The latest headlines deal with two flaws discovered by security researcher Juan Pablo Lopez Yacubian. Reported to Secunia, who labeled them highly critical earlier in the week, these vulnerabilities can be exploited to conduct spoofing attacks as well as potentially compromise a victim's PC.

According to Secunia, an error caused within the browser when downloading something with an overly long filename can be exploited to cause memory corruption. This in turn can be exploited to allow arbitrary code execution. The second error, involving Safari's window handling, can be exploited to show a trusted URL in the browser's address bar while at the same time display arbitrary content in the main window. Their solution at the moment is to avoid any Web sites that you do not trust. Although I stated on Sunday that Safari for Windows was worth taking a look at, in light of these breaking developments you may want to use an alternate browser until a fix is released.

(Photo © Getty Images - #74540692/Justin Sullivan)

Comments

March 28, 2008 at 12:56 pm
(1) Martyn P says:

This is a bit worrying seeing as Apple has tried to download this browser onto any computer using iTunes.

May 10, 2008 at 6:17 pm
(2) Eduoard says:

So tell us which is the best browser

May 10, 2008 at 6:19 pm
(3) Eduoard says:

Stop confusing us and tell us which is the most safe browser

Leave a Comment

Line and paragraph breaks are automatic. Some HTML allowed: <a href="" title="">, <b>, <i>, <strike>

Explore Web Browsers

More from About.com

  1. Home
  2. Computing & Technology
  3. Web Browsers

©2008 About.com, a part of The New York Times Company.

All rights reserved.