Apple updates Safari for security
Apple released a security update for its Safari Web browser on Wednesday. Available for Windows and Mac, Safari 4.0.4 plugs what sound like moderate to severe security holes. Unlike competitors Internet Explorer, Firefox, and Chrome, Apple doesn't rate the severity of its security fixes.
The security fixes address a wide range of problem points. On both Windows and Mac, parsing maliciously written XML content could have led to a browser crash, using shortcut menu options within a maliciously created Web site could have led to the disclosure of local information, and visiting a maliciously built Web site could have resulted in unexpected actions on other opened Web sites.
For Windows only, viewing a maliciously made image with an embedded color profile that could lead to a browser crash or running arbitrary code is no longer a threat, nor is accessing a maliciously crafted FTP server, which could have led to an unexpected crash, information disclosure, or arbitrary code execution. For Mac only, an exploit that could have allowed e-mail to remotely load audio and video content when loading a remote image has been disabled.
Although it's good practice to update a program whenever a security fix has been released, more transparency from Apple on the matter would pull the company up to competitors' standards.
Click here to read the full changelog for Safari 4.0.4.
Seth peers into the deep, dark corners of software so that you don't have to. He has yet to suffer a single nightmare about OS/2. You can follow him on Twitter. 
If that doesn't work, quit Safari and locate these files: 'com.apple.Safari.plist' from your Library/Preferences folder, and 'TopSites.plist' from your Library/Safari folder. Restart Safari. If the problem got fixed, quit Safari again and replace the new 'com.apple.Safari.plist' file with the one you placed outside (so that you won't have to reconfigure everything). If after restarting Safari again the feature still isn't broken, the 'TopSites.plist' file was corrupted, so you must reconfigure that manually; if the feature broke again, discard the old 'com.apple.Safari.plist' because it got corrupted (unless you want to do surgery on a complex XML file) and reconfigure your preferences by hand.
Fortunately preferences files very rarely get corrupted, but when they do you just need to identify them and move them away so that a new file with the default settings will be created automatically the next time you restart the application.
Be a pretend shellcode coder
Now I'm bummed. Here I was, thinking of buying a Mac, thinking that Apple was the Second Coming with their perfection, and now this. /sarcasm.
you do know that snow kitten comes with an anti-virus/malware built-in by apple
and i agree that it's terrible that apple doesn't grade the severity of their bugs/holes and as a consumer i wouldn't to be trapped inside apple's walled garden until it becomes a prison instead of a paradise
microsoft, mozilla, google, and opera are all transparent, why not apple
i dont have to run any security software, even the built in firewall is disabled and my PC is online 24/7.
so unless you are a complete retard who opens attachments from people you dont know and trust or downloading a movie or a picture with .exe then your PC is secure .. but if thats what you're being told by apple beside the magical notebook that somehow goes to sleep when you close the Led.. then i see where your coming come .
@exactlyy--Riiiight and you call macheads "tards" for thinking they are impervious.
noone in the world is impervious and no OS is fully impervious , my point was if you know what you are doing on your PC or Mac and if you dont download cracks,hacks...etc or images.exe then i belive you are safe unless some really good hacker wants to hack your machine then nothing can stop him .
i just wanted to say to Mac fanboys who belive that on PC you cant get online unless you install antiviruse, antispyware and a firewall like zone alarm . they are mistaken and they are spreading lies .. and again i been using windows 7 for almost 10 months , and i have no security software what so ever..and befor i used windows XP from 2003 till March 2009 . i installed NIS for 2 days in 2003 and never tried any antiviruse after that ..never got a viruse .
He is a troll
Like this .
with windows you do it when you feel like it.
with Mac , $teve Job$ takes care of the process and ereases your data for you .. Pwange !!
yes every software needs updates .. but for a fresh OS which supposed to be the most secure OS around.. and which does work like the tards in the ads say while keep on moving their hands like clowns to show how much they're exited .. its just not right and cant be accepted .. cause this means the people who used SL the past 2 months were at risk , and maybe their privacy,password, credit card and social security numbers have been compromised and yet apple wouldnt even say what they have fixed and how sever the threats were .
the only bright side i see is that apple has released 3 updates for SL so far - if i am not mistaken- with about 700 MB of holes fixes .. and they didnt force you to pay like they used to do ..thats good for them ..and for more transparency i'd suggest that they change the name of this full of holes SL to S-lo-t Leopard .
what's wrongt with you dude ? really , where did i say snow leopard is a service pack ??
i said SL which means snow leopard :S and i said a fresh OS , i never said it was a complete BS and thats not the reason i am attacking it.. the only reason is because its overpriced and the way steve jobs believes that customers dont know what they want untill he shows it to them ! i'd rather not take whatever steve wants me to take..insted i build my PC and install windows 7 , SL and ubuntu ..thats what i want and i know excatly what i want , but do you really know what you want or as steve said ? u need someone else to show you what they think is better for you ??
Not trying to start a fight here, but I can't help but notice multiple instances where you to argue on these posts. Are you actually friends in real life just having fun? Because if so, I want in!
HAHAHA!! So women only "show their anatomy" to people who don't hate Apple? You sound like the average Mac commercial writer. "Love Apple or women won't show your their anatomy!" There's about as much truth to that as every other Mac commercial I've seen.
@exactlyy--That is your quote. You flat out imply that the SL upgrade was a service pack. Done with your BS, as I have nothing else to prove to you.
@exactlyy hit it on the head. I am an IT tech and run my own side business and i can't tell you how many people get so terrified when their system has been compromised in one way or another. Apple is a very shady company and i have been fully against their practices since day 1. That company should be investigated for their practices in the market place and wouldn't be surprised if they had to pay billions in fines.
How dare a company not inform the public as to why they need to fix the OS running on a pc they paid thousands for? A PC that holds all of their personal information? Having misleading ads and misleading the public?
Apple is a pathetic company and if it wasnt for Bill Gates greed, that company would not exist at all.
Thank you Bill for investion 150 mil and providing office products for a criminal company in the mid 90's
http://news.cnet.com/2100-1001-202143.html
Security fixes? apple doesn't have security problems just "Features". Why would mac even need security they are "virus free" and "unhackable" right? (if you can't see the dripping sarcasm I might just take a sledge to an i-mac I got laying around)
everything has holes some are bigger than others. At least MS tells you when it's a real goof, how many "minor fixes" were caps to giant security holes? That's like saying Jobs liver failure was just a tummy ache and the guy that died because he didn't get the liver was a feature of Jobs surgery.
This is where the Mac Fanatics come from apple gives them a polished spun story on "minor issues" with osx then turn around and give wild eyed Rush Limbaugh style speculation at everything not mac. I don't ask Mac users to abandon a very nice operating system, I don't stand at the mountain top calling windows infallible(I love windows and I still think they could do better). I just wish the Apple kool-aid drinkers could step back and gain a little perspective, Your system = good, My system = good and Both our systems < Perfect
But i do disagree with windows being good and sl being good also. any apple os has been very poor to say the least from day 1. unix is their main issue simply because unix is swiss cheese out of the box and has tons of holes to patch.
and people wonder why the only point that most of windows and ubuntu users agree on is that most of the MAC OS users are stupid,brainwashed and just know nothing other than the lies they are being told by $teve Job$ about how safe, cool and smart they are .
Mac unhackable ?? have you ever heard about "The PWN2OWN contest" ? and the winner of that contest "Charlie Miller" ? who hacked into OS X in less than 2 minutes in March 2008.
and he did it again with Snow Leopard in March 2009 but this time in less than 10 seconds and in the same contest "Pwn2Own CamSecWest hacking competition."
the guy who can hack into Mac within 10 seconds indicated that the security Apple built into Snow Leopard is inferior not only to Windows 7, but also to Windows Vista, a three-year old operating system .
so please befor you open your mouth and tell us how safe and secure OS X is and make a fool of yourself just search and read as much as you can .. and here are some links to get you started .
http://news.softpedia.com/news/Windows-7-Bests-Snow-Leopard-Says-Mac-Hacker-121895.shtml
http://www.macworld.com/article/133098/2008/04/hack.html
dude, hold up, did you read my post? where did i give you the impression I'm a mac guy. "" means sarcasm like calling George W. "Educated". and I really don't see how you could call me a mac fan when I compared Jobs with an Organ harvesting murder. I know mac are hackable and insecure, to a factor of 2X more known hacks than windows vista. and i was sure, dead sure that comparing mac portrayal of other os's to a racist close-minded bigot would have left no doubt as to my point.
congrats you have managed to limbo under my expectations which were already in the basement
*grabs the sledge* you have doomed this poor i-Mac to death by sledge i hope your happy
Each OS has its issues and it's good to have updates released. Yes, Apple could do more to improve their public image by being a bit more open, but that's simply not going to happen, so accept it and move on.
WRONG!!! Haven't you ever seen a Mac commercial?? Macs are flawless. End of story. You dumb dummy.
They only put out these "security updates" because they have nothing better to do with their perfect software.
The problems people experience with their Macs are somehow caused by Microsoft, Barak Obama, and Aliens that live in spaceships in orbit around Earth. Don't you know anything Vegaman_Dan?? If that is, in fact, your real name!
Oh well, at least I didn't tell you about our plans to take over the Earth through the use of iPhones.
DRAT!
i propose a commenter ranking system to combat this. let us banish the fanboys to low-ranking-ridicule! are u listening cnet??
in all seriousness, these matters should be discussed over and over again because it has to be known and this information has to spread because of the consumer being mislead by those crazy commercials. plus it's not always the same readers on every article so repeating is not a bad thing
What was repeating again?
Once again people, it is a two street of Mac fans and Wndows fans having a pissing contest. It's all silly and petty if you ask me and as of right now I am done with posting to this constant drivel of a site (not the CNET articles but the "comments" section). It is pointless to argue with brick walls on both sides, plain and simple. Good luck everyone with whatever you use."
Oops!! I meant to say "two WAY street". Sorry, I was not going to go away with bad grammar on my last post. Adios!
Once again people, it is a two street of Mac fans and Wndows fans having a pissing contest. It's all silly and petty if you ask me and as of right now I am done with posting to this constant drivel of a site (not the CNET articles but the "comments" section). It is pointless to argue with brick walls on both sides, plain and simple. Good luck everyone with whatever you use."
"two WAY street". Oops.
Firefox all the way!
i wont use internet explorer because of that
- by bousozoku November 13, 2009 12:50 AM PST
- All I can say is that I'm surprised that Apple is actually getting to Safari problems *relatively* quickly. Prior to version 4, they let the problems languish until they became news and then, they took a lot of time to fix them.
- Like this Reply to this comment
-
(63 Comments)Of course, with Google using WebKit also, they've probably been finding more problems with the code and the fixes go between the two companies.