Show filters
195 Total Results
Displaying 171-180 of 195
Sort by:
Attacker Value
Unknown

CVE-2010-1119

Disclosure Date: March 25, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, Safari before 4.1 on Mac OS X 10.4, and Safari on Apple iPhone OS allows remote attackers to execute arbitrary code or cause a denial of service (application crash), or read the SMS database or other data, via vectors related to "attribute manipulation," as demonstrated by Vincenzo Iozzo and Ralf Philipp Weinmann during a Pwn2Own competition at CanSecWest 2010.
0
Attacker Value
Unknown

CVE-2010-0049

Disclosure Date: March 15, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via HTML elements with right-to-left (RTL) text directionality.
0
Attacker Value
Unknown

CVE-2010-0051

Disclosure Date: March 15, 2010 (last updated October 04, 2023)
WebKit in Apple Safari before 4.0.5 does not properly validate the cross-origin loading of stylesheets, which allows remote attackers to obtain sensitive information via a crafted HTML document. NOTE: this might overlap CVE-2010-0651.
0
Attacker Value
Unknown

CVE-2010-0053

Disclosure Date: March 15, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to the run-in Cascading Style Sheets (CSS) display property.
0
Attacker Value
Unknown

CVE-2010-0052

Disclosure Date: March 15, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to "callbacks for HTML elements."
0
Attacker Value
Unknown

CVE-2010-0054

Disclosure Date: March 15, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving HTML IMG elements.
0
Attacker Value
Unknown

CVE-2010-0045

Disclosure Date: March 15, 2010 (last updated October 04, 2023)
Apple Safari before 4.0.5 on Windows does not properly validate external URL schemes, which allows remote attackers to open local files and execute arbitrary code via a crafted HTML document.
0
Attacker Value
Unknown

CVE-2010-0044

Disclosure Date: March 15, 2010 (last updated October 04, 2023)
PubSub in Apple Safari before 4.0.5 does not properly implement use of the Accept Cookies preference to block cookies, which makes it easier for remote web servers to track users by setting a cookie in a (1) RSS or (2) Atom feed.
0
Attacker Value
Unknown

CVE-2010-0046

Disclosure Date: March 15, 2010 (last updated October 04, 2023)
The Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted format arguments.
0
Attacker Value
Unknown

CVE-2010-0042

Disclosure Date: March 15, 2010 (last updated October 04, 2023)
ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows does not ensure that memory access is associated with initialized memory, which allows remote attackers to obtain potentially sensitive information from process memory via a crafted TIFF image.
0