Apple Security Update 2006-002 patches Mail, Safari

By AppleInsider Staff

Apple this afternoon released Security Update 2006-002, which is recommended for all users and improves the reliability and security of the following components: apache_mod_php, CoreTypes, LaunchServices, Mail, Safari, rsync. Specifically, the update attempts to repair issues where remote web sites can cause JavaScript to bypass the same-origin policy, double-clicking an attachment in Mail may result in arbitrary or malicious code execution, and where viewing a malicious web site may result in arbitrary or malicious code execution.