Neben ein paar Enhancements werden auch einige kritische Sicherheitslücken der Vorgängerversion beseitigt, darunter:
Security
* Fixed XMLHttpRequest redirect vulnerability reported in Secunia Advisory 15008.
* Fixed cross-site scripting vulnerability reported in Secunia Advisory 15411.
* Fixed cross-site scripting vulnerability in location header when automatic redirection is disabled. Vulnerability reported in Secunia Advisory 15423.
* Fix for variant of window injection vulnerability reported in Secunia Advisory 13253
* Fixed information disclosure weakness causing file path information to be sent when using the GET form method. Security Focus Bugtraq ID #12723.
* Improved accuracy of security bar and modified security icon behavior: when a certificate is accepted manually after a warning, the security level of the connection is set to 1.
* Fixed issue with wrong referrers being sent to sites in browsing history.
* Fixed erroneous display of certificate names containing ampersands.
* Solved problem with collapsed address bars for some pop-ups missing indication of security level.
Viren, Spyware, Datenschutz 11.242 Themen, 94.693 Beiträge
...da habe ich unzulässig vereinfacht: Ja, es war natürlich von "bekannten" Sicherheitslücken die Rede.
> Eine Software diesen Umfanges wird wohl nie ohne Sicherheitslücken auskommen, egal von welchem Hersteller
Das habe ich in diesem Thread sinngemäß auch gesagt, aber dazu scheint es verschiedene Meinungen zu geben :o)
CU
Olaf
