The new version patches a command-injection vulnerability that could potentially lead to arbitrary code execution; an out-of-bounds memory read issue that might mean unexpected application termination or arbitrary code execution; and a race condition that may allow cross-site scripting.

The patches come after intense scrutiny and criticism from many in the security industry. Apple said the new version was only for Windows XP and Windows Vista users because the security issues did not affect native Mac OS X computers.