PT-2005-4638 · Apple · Safari

Kyle Wheeler

·

Published

2005-11-29

·

Updated

2016-10-18

·

CVE-2005-3897

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Apple Safari version 2.0.2
Description The issue allows remote attackers to cause a denial of service, resulting in a system slowdown. This can be achieved via a Javascript BODY onload event that calls the window function.
Recommendations For Apple Safari version 2.0.2, consider disabling Javascript or restricting the use of the window function in the BODY onload event to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-3897

Affected Products

Safari