Safari 3.1.1 is Available

Safari Icon

Apple releases Safari 3.1.1 to address stability, compatibility and Security.

Safari 3.1.1 is available for Mac OS X Tiger, Leopard, and Windows XP/Vista.

About the security content of Safari 3.1.1

Safari 3.1.1

  • Safari
    CVE-ID: CVE-2007-2398
    Available for: Windows XP or Vista
    Impact: A maliciously crafted website may control the contents of the address bar

    Description: A timing issue in Safari 3.1 allows a web page to change the contents of the address bar without loading the contents of the corresponding page. This could be used to spoof the contents of a legitimate site, allowing user credentials or other information to be gathered. This issue was addressed in Safari Beta 3.0.2, but reintroduced in Safari 3.1. This update addresses the issue by restoring the address bar contents if a request for a new web page is terminated. This issue does not affect Mac OS X systems.
  • Safari
    CVE-ID: CVE-2008-1024
    Available for: Windows XP or Vista
    Impact: Visiting a maliciously crafted website may lead to an unexpected application termination or arbitrary code execution

    Description: A memory corruption issue exists in Safari’s file downloading. By enticing a user to download a file with a maliciously crafted name, an attacker may cause an unexpected application termination or arbitrary code execution. This update addresses the issue through improved handling of file downloads. This issue does not affect Mac OS X systems.
  • WebKit
    CVE-ID: CVE-2008-1025
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5.2, Mac OS X Server v10.5.2, Windows XP or Vista
    Impact: Visiting a malicious website may result in cross-site scripting

    Description: An issue exists in WebKi’s handling of URLs containing a colon character in the host name. Opening a maliciously crafted URL may lead to a cross-site scripting attack. This update addresses the issue through improved handling of URLs. Credit to Robert Swiecki of Google Information Security Team and David Bloom for reporting this issue.
  • WebKit
    CVE-ID: CVE-2008-1026
    Available for: Mac OS X v10.4.11, Mac OS X Server v10.4.11, Mac OS X v10.5.2, Mac OS X Server v10.5.2, Windows XP or Vista
    Impact: Viewing a maliciously crafted web page may lead to an unexpected application termination or arbitrary code execution

    Description: A heap buffer overflow exists in WebKit’s handling of JavaScript regular expressions. The issue may be triggered via JavaScript when processing regular expressions with large, nested repetition counts. This may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue by performing additional validation of JavaScript regular expressions. Credit to Charlie Miller for reporting these issues.

Safari 3.1.1 can be obtained through Safari Download Page or Apple Software Updates.

Panasonic HDC-SD9: 1080p/24p Video Sample

Since I can now use Final Cut Pro 6 to “Log and Transfer” 1080p/24p clip from my Panasonic HDC-SD9, I will be posting more video sample from this camera.

It was a nice day, so I took a little walk and film some footage using Panasonic HDC-SD9. Check out the video, QuickTime 7 is required for playback.

Prepare for Landing

Video info:

  • Format: H.264, 1920×1080
  • File Size: 16.66 MB
  • Frame Rate: 23.98 FPS
  • Data rate: 8.73 mbits/s
  • Length: 16.01 seconds

Panasonic HDC-SD9 settings:

  • Recording Mode: HA1920
  • 24p Digital Cinema: On
  • Intelligent Contrast: On

Software info:

I will post more videos.

Panasonic HDC-SD9 and Final Cut Pro: Library and Plugins

Someone requested me to post screenshots of plugins directory for QuickTime and Final Cut Pro; and my System Preferences.

Hope this helps. I now have no problems importing 1080p/24p clip from Panasonic HDC-SD9 using Final Cut Pro 6.0.3 and Perian 1.1 QuickTime Component.

Let me know how it goes.

Panasonic HDC-SD9 in Apple Knowledge Base

From Apple Support:

http://support.apple.com/kb/TS1348

Final Cut Pro, Final Cut Express: Unexpected quit with Panasonic HDC-SD9 AVCHD

Symptoms
Final Cut Pro and Final Cut Express may quit unexpectedly when using the Log and Transfer window to preview AVCHD media from a Panasonic HDC-SD9 camcorder.

Products Affected
Final Cut Pro 6.0, Final Cut Express 4.0

Resolution
The Panasonic HDC-SD9 model camcorder is currently not qualified for use with Final Cut Pro or Final Cut Express.  Although some devices that are not qualified may work to some extent with Final Cut Pro and Final Cut Express, in this case the camcorder may not perform as expected.

To find devices qualified for use with Final Cut Pro and Final Cut Express, refer to Qualified Devices for Apple Pro Applications.

Additional Information
This camcorder’s implementation of AVCHD video uses a format of H.264 that employs “Br-frames”, which are similar to traditional MPEG-4 B-frames, but contain motion reference information. The Final Cut Pro and Final Cut Express components that preview AVCHD media currently do not recognize or handle Br-frames in AVCHD data.

Up to this point, Panasonic HDC-SD9 is not yet supported in Final Cut Pro and Final Cut Express by Apple.

Panasonic HDC-SD9 and Final Cut Pro: Perian to The Rescue

UPDATE 2008.06.11:

QuickTime 7.5 adds support for Panasonic HDC-SD9 and other newer AVCHD camcorders.

Hans Eklundh left a comment and confirmed that the 25p PAL version (Europe) also works with QuickTime 7.5

“Good news, everyone! We finally can use Panasonic HDC-SD9 and Final Cut Pro.”

AVCHD Final Cut Pro Icon

UPDATE:
So far, I have not been able to import 1080p/24p clip from HDC-SD9 into iMovie correctly. I’m still looking into it. I don’t have Final Cut Express 4 to test the import.

Good news, indeed. After 6 weeks, I finally get to import 1080p/24p clip from Panasonic HDC-SD9 correctly. The audio and video are in complete sync. The remedy is none other than Perian 1.1. Previously, Perian QuickTime Component was conflicting with Final Cut Pro.

Numbers of people raised the concern regarding Panasonic HDC-SD9 compatibility with Mac OS X applications (iMovie ’08, Final Cut Pro 6, and Final Cut Express 4). I was exploring this issue because I want to use my Panasonic HDC-SD9 in 1080p/24 mode.

Panasonic HDC-SD9 AVCHD Camcorder

I asked some Apple employees regarding this problem, and the non-answer I got is that Apple is working on camera compatibility issues. I’m hoping that Apple would update their applications to support Panasonic HDC-SD9 in particular and newer 1080p/24p camcorders in general.

On Thursday (2008.04.10), Apple released Pro Applications Update 2008-001 and brought Final Cut Pro to version 6.0.3. I was hoping that Apple would have resolved the issues with HDC-SD9 camcorder. Unfortunately, the issue persisted.

I decided to spend some times for trial-and-error in making Final Cut Pro playing nice with HDC-SD9. It was 03:00 hour, and I had an epiphany. Previously, some people were recommending ShedWorx’s VoltaicHD Converter to import AVCHD clip in Mac OS X. I went to ShedWorx’s site and read the System Requirements for the VoltaicHD Converter:

System Requirements for the VoltaicHD Converter:

  1. OSX 10.4 or 10.5 (Intel and PowerPC)
  2. QuickTime 7.3
  3. Apple Intermediate Codec (AIC)
  4. iMovie (HD or 08) or Final Cut Express/Pro
  5. Perian if you are using Final Cut

VoltaicHD requires Perian QuickTime Component!

I checked Perian site, and compared the version I previously had installed on my MacBook Pro. The current version 1.1 and I had version 1.0 installed on my MacBook Pro. I downloaded the latest version and installed it. This time Final Cut Pro converts the 1080p/24p clip from HDC-SD9 correctly.

I will test if I could import HDC-SD9 1080p/24p video using iMovie ’08 and Final Cut express with Perian 1.1 installed.

NEXT:
Video sample from Panasonic HDC-SD9, 1080p/24p, audio and video in complete sync.

Note:

  • 15-inch MacBook Pro Core Duo 2.0GHz 2GB RAM
  • Mac OS X Leopard 10.5.2
  • Final Cut Pro 6.0.3 (with Pro Applications Update 2008-001)

Apple Releases Pro Applications Update 2008-001

Apple today releases Pro Applications Update 2008-001.

About Pro Applications Update 2008-001:

This update improves reliability for Apple’s professional applications and is recommended for all users of Final Cut Studio, Final Cut Server, Logic Studio, and Shake.

For more information about this software update, please see:
Release Notes

Pro Applications Update 2008-01 is a revision to Final Cut Studio 2.0. This update includes Final Cut Pro 6.0.3, Compressor 3.0.3, which addresses specific customer issues, installation issues, compatibility updates, general performance issues and improves overall stability.

This update is recommended for all users of Final Cut Studio 2.0 and later.

System Requirements:

  • Mac OS X 10.4.11
  • Mac OS X 10.5.2

Unfortunately, Apple has not added support for Panasonic HDC-SD9 1080p/24 mode. I have been waiting for the update from Apple to support this camera.