...parsing maliciously written XML content could have led to a browsercrash, using shortcut menu options within a maliciously...image with an embedded color profile that could lead to a browsercrash or running arbitrary code is no longer a threat...
http://download.cnet.com/8301-2007_4-10395874-12.html