This has been answered many times already. Apple will not wait till 4.1, this is a very high priority exploit for them. Comex has just released an exploit that let's you run code and modify the iOS on all iPhones and iPods in the world by simply visiting a website from safari. Do you get how serious this exploit is? Once someone else figures out the exploit used (it's a matter of time) what's to stop people creating malicious websites that modify your phone and install malicious software simply by VISITING their site. Expect a 4.0.2 very soon.