Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Focus on Apple
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: Mac OS X Dashboard Widget Vulnerabilities? Dec 06 2007 09:21PM
Mark Senior (senatorfrog gmail com)
It's worth noting that none of the included widgets seems to commit the sin
that makes this particular attack possible - i.e. to download javascript
over HTTP, and pass that straight to the javascript parser, particularly
while running in a sandbox environment that allows file system access.

I have...

[ more ]  





 

Privacy Statement
Copyright 2007, SecurityFocus