CVE-2009-1703
WebKit in Apple Safari before 4.0 does not prevent references to file: URLs within (1) audio and (2) video elements, which allows remote attackers to determine the existence of arbitrary files via a crafted HTML document.
Date published : 2009-06-10
http://lists.apple.com/archives/security-announce/2009/jun/msg00002.html