Secunia has discovered a new vulnerability in Apple’s Safari browser, which can be used to compromise a user’s system. The security hole is confirmed in Safari 4.0.5 for Windows and “other versions may also be affected”.
“The vulnerability is caused due to an error in the handling of parent windows and can result in a function call using an invalid pointer. This can be exploited to execute arbitrary code when a user e.g. visits a specially crafted web page and closes opened pop-up windows.”
Security update coming for Safari, perhaps for a 4.1 version? And could this 4.1 version the one with “full HTML5 support”? We’ll keep you posted.