Telstra has revealed the addition of almost one million new mobile services in the six months to December 2011, but Sensis revenues plummeted 24 percent in 12 months.
Revocation checking of Extended Validation (EV) certificates has been improved - under some circumstances checking could be bypassed, allowing a page to be loaded without warning of a revoked certificate.
Remote sites are no longer allowed to open local help files - this eliminates an opportunity for information leakage or arbitrary code execution.
The largest number of fixes are in WebKit, the framework (based the open source project of the same name) that underpins Safari and other Mac OS X applications that use HTML or JavaScript.
Issues relate to cross-site scripting, URL spoofing using Unicode characters, malicious CSS, malformed HTML tables, clickjacking, JavaScript, cross-site image capture, XML, referencing local file: URLs, SVG animation, local Java applets, Web Inspector, and information disclosure during when dragging content.
There's no indication in the Apple security announcement that the company has cleaned up Safari 4.0 beta's habit of leaving behind page thumbnails when the browsing history is cleared.
Nor is it clear whether all the security fixes in Safari 4.0 relate only to the previous beta release, or if any of these issues are present in version 3.x.
We've asked Apple the question, and will update this story if and when we get an answer.
David Bass
| ComOps, a leading Australian provider of business software products and services, has won a competitive tender to deploy its Salvus safety, r…
How to Make Business Discovery Work for Your Business
Business Discovery takes its cues from consumer apps. Like Google, it encourages us- ers to hunt for and explore data without worrying about or even noticing the underly- ing technology. Their entire experience is working within an intuitive interface to get real-time, self-service results with only minimal training. ...more
Try an easy-to-use set of web-enabled
tools for business-class productivity services. Office 365 provides
anywhere-access to email, important documents, contacts, and calendars
on almost any device.