PT-2010-1875 · Apple · Webkit+1

Wushi

·

Published

2010-03-12

·

Updated

2024-02-03

·

CVE-2010-0050

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Apple Safari versions prior to 4.0.5
Description The issue is related to a use-after-free vulnerability in WebKit, allowing remote attackers to execute arbitrary code or cause a denial of service, resulting in an application crash. This can be achieved via an HTML document containing improperly nested tags.
Recommendations For versions prior to 4.0.5, update to version 4.0.5 or later to resolve the issue.

Exploit

Fix

Use After Free

Weakness Enumeration

Related Identifiers

CVE-2010-0050
ZDI-10-031

Affected Products

Safari
Webkit