Mail and Safari patched
Apple has released a security update that patches the recently discovered vulnerabilities in Mail.app, Safari and elsewhere.
The release notes
describe how Mail will be fixed:
In Mac OS X v10.4 Tiger, when an email attachment is double-clicked in Mail, Download Validation is used to warn the user if the file type is not “safe”. Certain techniques can be used to disguise the file’s type so that Download Validation is bypassed. This update addresses the issue by presenting Download Validation with the entire file, providing more information for Download Validation to detect unknown or unsafe file types in attachments.
Various Safari vulnerabilities are also remedied by this update, which is available in Software Update now.
Tags: Apple Mail, mail.app, patch, Safari, scripts, security update, vulnerabilityRelated posts
