Another day, another unpatched Safari browser vulnerability.
According to this flaw warning found on the NVD (National Vulnerability Database), Apple’s flagship browser is vulnerable to session fixation attacks because of the way it handles cookies in country-specific top-level domains.
[ SEE: Microsoft issues Safari-to-IE blended threat warning ]
Heise Security breaks down the attack vector:
Apple’s Safari web browser, [...]

http://feeds.feedburner.com/~r/zdnet/security/~3/348973982/