Release date: 2012-03-12
Updated on: 2012-03-13
Affected Systems:
Apple Safari <5.1.4 for Windows
Unaffected system:
Apple Safari 5.1.4 for Windows
Description:
--------------------------------------------------------------------------------
Bugtraq id: 52419
Cve id: CVE-2012-0584
Safari is the browser in Mac OS X, the latest operating system of Apple Computer. It uses KDE's KHTML as the core of browser computing.
The URI Spoofing vulnerability exists in Apple Safari when handling specific characters in the IDN domain. Attackers can exploit this vulnerability to trust fake Uris.
<* Source: Matt Cooley
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Apple
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://support.apple.com/