Safari RSS flaw exposes sensitive data
Posted on 13 Jan 2009 at 08:15
Apple has acknowledged a vulnerability in Safari’s RSS handler that could allow a malicious website to read files and gain access to sensitive information stored on the computer.
Brian Mastenbrook, who discovered the flaw, says Apple has acknowledged the problem, but given no indication when a fix will be released.
Until it is, Mac Safari users are advised to switch to an alternative RSS reader, such as the free NetNewsWire and NewsFire apps, by changing the default RSS reader setting in Safari’s preferences.
As for Windows, Mastenbrook says the only option is to use another web browser. PC users who have Safari installed but do not use if for browsing are not exposed to the vulnerability.
For more information, see Disclosure of information vulnerability in Safari.
Author: Simon Aughton
Find a review
advertisement
Arctic Cooling Ultra Slim Case for iPhone 4
Category: GadgetsRating:
Price: £12
Proporta Kindle Book cover (2011)
Category: GadgetsRating:
Price: £25
SteelSeries SRW-S1
Category: GadgetsRating:
Price: £87
Aeris Muvman
Category: GadgetsRating:
Price: £341
Kingston Ultimate 64GB SDXC
Category: GadgetsRating:
Price: £110
- Waterstones and Amazon partner up for Kindle sales
- Microsoft So.cl social network site launched
- Sony patent points to piggy-backed wireless power
- UK broadband users getting 42 per cent lower speed than advertised
- LG Cloud takes on Apple iCloud
- Greenpeace protests Apple's coal-powered data centres
- John Lewis broadband now available
- Android users targetted with malicious Instagram app
- BT Infinity doubles top speed to 76Mbit/s
- PowerPot combines gadget charging and cooking
Software Store
advertisement

