skreidle: (Default)
skreidle ([personal profile] skreidle) wrote2004-05-19 01:42 am

MacOS X 10.3 security chasm

PSA courtesy [livejournal.com profile] jazzfish:

It seems OSX 10.3 [Panther] has a simple, easily-fixed, and gaping security hole.

"It is possible to write a URL that, when invoked from one’s default browser, invokes Apple’s Help program, which is itself a mini-browser which uses a subset of HTML. The trouble is that unlike a well-written, full-fledged, OSX browser, the Help program is (a.) fully scriptable; and (b.) fully capable of running any application or command for which the user has privileges."



Watched Gilmore Girls season finale. Action-packed!

[identity profile] skreidle.livejournal.com 2004-05-19 04:04 pm (UTC)(link)
Better than series finales--at least there -is- a continuation!