https://flip.it/C9JZeH
这是zero day flow, 表示漏洞已经被发现正在被利用
The flaw lets a malicious website or web page spark "universal cross-site scri
pting" in WebKit, says Apple.
一个网页的程式码可以在另外一个网站执行
That would be very bad indeed, as it means that ne'er-do-wells can embed code
in websites that can redirect you to malicious websites or even steal informat
ion, such as passwords or credit-card numbers, from your browser.
这表示一个看起来正常的网站可以强迫妳转到坏的网站再对你做坏坏的事,比如说偷信用
卡资料
Apple said this new issue "was addressed by improved management of object life
times," although we really can only guess at what that means.
苹果说这个问题目前以更好的物件寿命管理来解决,虽然不知道这什么意思
Credit for finding the flaw was given to Cl幦ent Lecigne and Billy Leonard, bo
th researchers in Google's Threat Analysis Group.
感谢google 帮忙找到漏洞
大家赶快更新吧~
虽然觉得好像没有完全解决