ALARM Group ALERT - click for a description of ALARM, The Computing Alert System Alert Number: 061807-01 Alert Date: 06/18/07 Alert Title: Update available for Safari browser on Windows Update-to: None OS/Platform/Application: Apple Safari (Beta) browser on Microsoft Windows XP and Vista Category: ALERT Severity: MEDIUM Attention: Windows system Administrators, Desktop Support Personnel, Safari (Windows) Users
|
Summary: On June 15 2007 Apple released a new version (v3.0.1) of its Safari (beta) browser for Microsoft Windows users. Version 3.0.1 of the browser addresses three security issues that could result in execution of arbitrary code on vulnerable systems. The most likely vector of exploit would be the visitation of a maliciously-crafted website.
Recommended Actions: Administrators/users or Windows systems that run the Safari browser are encouraged to install the updated version of this software as soon as possible.
ITS Actions: N/A
Resources:
Safari download page:
http://www.apple.com/safari/download/
SANS article on Safari vulnerabilities:
http://isc.sans.org/diary.html?storyid=2982
Network World Article on Safari vulnerabilities:
http://www.networkworld.com/news/2007/061107-safari-for-windows-released-and.html?nlhtbug=0611bug2&