|
Mac OS X contains a flaw that may allow a malicious user to execute arbitrary Javascript code. The issue is triggered when LaunchServices identifies certain HTML files as "safe," and Safari's "open 'safe' files after downloading" option is enabled, which may allow Javascript code in the file to run locally and bypass restrictions placed on remote code. It is possible that the flaw may allow arbitrary Javascript code execution resulting in a loss of integrity.
|