http://www.macworld.com/article/138808/200...te_2009001.html
QUOTE
Among the fixes in Security Update 2009-001 are a patch for the Safari RSS vulnerability demonstrated by developer Brian Mastenbrook last January. Also fixed were a denial of service vulnerability in AFP server, a flaw in CoreText that could allow maliciously crafted Unicode content to execute arbitrary code, and a security hole that could let other local users access a user’s Downloads folder, and several other vulnerabilities.
It's for Leopard and Tiger on PPC and Intel Macs. Not sure if it's in Software Update yet or not - it's not showing up in mine.
You can download the Leopard one here:
http://www.apple.com/downloads/macosx/appl...001leopard.html
If you need any of the other versions:
http://www.apple.com/downloads/macosx/apple/