Apple fixes seven Safari security flaws
Apple rolls out security updates to address seven vulnerabilities in its web browser

Apple has released a security update to fix seven vulnerabilities found in Safari's Webkit framework.
The update can be found on the Apple support page now for OS X Lion v10.7.5, OS X Lion Server v10.7.5, OS X Mountain Lion v10.8.5 and OS X Mavericks v10.9.4. It applies to Safari 6.1.6 and Safari 7.0.6.
According to Apple, several memory corruption issues were present in Webkit that have been addressed with improved memory handling.
The US-based company said: "Visiting a maliciously crafted website may lead to an unexpected application termination or arbitrary code execution."
The global tech giant refused to comment on whether hackers have exploited the vulnerabilities. It said: "For the protection of our customers, Apple does not disclose, discuss or confirm security issues until a full investigation has occurred and any necessary patches or releases are available.
Even so, the United States Computer Emergency Readiness Team (US-CERT) is urging IT managers to install the updates as a matter of urgency.
"Users and administrators are encouraged to review Apple security update... and apply the necessary updates," its advisory states.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Problems with Webkit are not uncommon. It is the open source framework behind Safari, Google Chrome and other OS X applications such as Mail.
While Google Chrome frequently reports vulnerabilities in Webkit, Apple had to release a variety of browser patches in July that also covered problems with the framework.
-
Should AI PCs be part of your next hardware refresh?
AI PCs are fast becoming a business staple and a surefire way to future-proof your business
By Bobby Hellard
-
Westcon-Comstor and Vectra AI launch brace of new channel initiatives
News Westcon-Comstor and Vectra AI have announced the launch of two new channel growth initiatives focused on the managed security service provider (MSSP) space and AWS Marketplace.
By Daniel Todd
-
macOS Sierra UK release date, price, features: Night Shift mode returns with macOS Sierra 10.12.4 beta 8
Rumours The tech will reduce blue light from your screen at night time
By Jane McCallion
-
OS X 10.11 El Capitan release date and features: Is it worth upgrading?
News OS X 10.11.6 update released for developer and public beta testing
By Maggie Holland
-
Apple MacBook Retina 12in review - 'a superb choice, but challenging to fit into how you work'
Reviews Apple upgrades specs and adds rose gold model for 2016 MacBook Retina 12in
By Alan Lu
-
Critical vulnerability discovered in OS X
News Built-in security measures no match for Zero Day flaw, claims security firm
By Jane McCallion
-
Apple 13-inch MacBook Pro With Retina Display (Early-2015) review
Reviews A Broadwell upgrade provides impressive battery life for Apple’s business laptop.
By Cliff Joseph
-
Visual Studio Code: Everything you need to know
In-depth Free, cross-platform code editor unveiled at Microsoft's Build conference
By Nicole Kobie
-
Why a vulnerable Mac is not necessarily an insecure one
Analysis Just because an attack on OS X is possible, doesn't mean it will happen
By Davey Winder
-
WWDC 2015 live: OS X El Capitan, iOS 9, watchOS 2 and more
News A UK Apple Pay launch date, OS X 10.11 El Capitan, iOS 9 and watchOS 2 all confirmed
By Jane McCallion