Top Sites flaw lets criminals insert malicious sites into thumbnail view

A month after it last patched Safari, Apple today plugged six security holes, four of them critical, in its Mac and Windows Web browser.

Safari 4.0.3 fixes six flaws in the Windows XP and Vista edition, but only four in the Mac OS X edition. Three of the half-dozen bugs were in WebKit, the open-source browser engine that powers Safari, as well as Google's Chrome.

Four of the vulnerabilities patched today were described by Apple as possibly allowing "arbitrary code execution," company-speak for a critical bug that, if exploited, could let hackers dump malicious software on the machine or hijack it for their own use.

More: http://computerworld.com/s/article/9136540/

............................................................................................