PT-2010-5099 · Apple · Macos X+1
Abhishek Arya
+1
·
Published
2010-11-20
·
Updated
2017-09-19
·
CVE-2010-3817
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Safari versions prior to 5.0.3 on Mac OS X 10.5 through 10.6 and Windows
Safari versions prior to 4.1.3 on Mac OS X 10.4
Description
The issue arises from improper casting of an unspecified variable during the processing of Cascading Style Sheets (CSS) 3D transforms. This allows remote attackers to execute arbitrary code or cause a denial of service, resulting in an application crash, via a crafted web site.
Recommendations
For Safari versions prior to 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, update to version 5.0.3 or later.
For Safari versions prior to 4.1.3 on Mac OS X 10.4, update to version 4.1.3 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Macos X
Safari