PT-2009-5690 · Apple+1 · Webkit+2

Michal Zalewski

·

Published

2009-10-27

·

Updated

2017-09-19

·

CVE-2009-3384

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Apple Safari versions prior to 4.0.4
Description The issue concerns multiple unspecified vulnerabilities in WebKit within Apple Safari. These vulnerabilities can be exploited by remote FTP servers, allowing them to execute arbitrary code, cause a denial of service (resulting in an application crash), or obtain sensitive information. This can occur via a crafted directory listing in a reply.
Recommendations For versions prior to 4.0.4, update to version 4.0.4 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-3384
RHSA-2009:1530
RHSA-2009:1531
RHSA-2009_1530
RHSA-2009_1531
RHSA-2010:0153
RHSA-2010:0154
RHSA-2010_0153
RHSA-2010_0154

Affected Products

Red Hat
Safari
Webkit