Show filters
230 Total Results
Displaying 221-230 of 230
Sort by:
Attacker Value
Unknown
CVE-2008-0298
Disclosure Date: January 16, 2008 (last updated October 04, 2023)
KHTML WebKit as used in Apple Safari 2.x allows remote attackers to cause a denial of service (browser crash) via a crafted web page, possibly involving a STYLE attribute of a DIV element.
0
Attacker Value
Unknown
CVE-2007-3186
Disclosure Date: June 12, 2007 (last updated October 04, 2023)
Apple Safari Beta 3.0.1 for Windows allows remote attackers to execute arbitrary commands via shell metacharacters in a URI in the SRC of an IFRAME, as demonstrated using a gopher URI.
0
Attacker Value
Unknown
CVE-2006-1985
Disclosure Date: April 21, 2006 (last updated October 04, 2023)
Heap-based buffer overflow in BOM BOMArchiveHelper 10.4 (6.3) Build 312, as used in Mac OS X 10.4.6 and earlier, allows user-assisted attackers to execute arbitrary code via a crafted archive (such as ZIP) that contains long path names, which triggers an error in the BOMStackPop function.
0
Attacker Value
Unknown
CVE-2006-1987
Disclosure Date: April 21, 2006 (last updated October 04, 2023)
Apple Safari 2.0.3 allows remote attackers to cause a denial of service and possibly execute code via an invalid FRAME tag, possibly due to (1) multiple SCROLLING attributes with no values, or (2) a SRC attribute with no value. NOTE: due to lack of diagnosis by the researcher, it is unclear which vector is responsible.
0
Attacker Value
Unknown
CVE-2006-1986
Disclosure Date: April 21, 2006 (last updated October 04, 2023)
Apple Safari 2.0.3 allows remote attackers to cause a denial of service and possibly execute code via a large CELLSPACING attribute in a TABLE tag, which triggers an error in KWQListIteratorImpl::KWQListIteratorImpl.
0
Attacker Value
Unknown
CVE-2006-1988
Disclosure Date: April 21, 2006 (last updated October 04, 2023)
The WebTextRenderer(WebInternal) _CG_drawRun:style:geometry: function in Apple Safari 2.0.3 allows remote attackers to cause a denial of service (application crash) via an HTML LI tag with a large VALUE attribute (list item number), which triggers a null dereference in QPainter::drawText, probably due to a failed memory allocation that uses the VALUE.
0
Attacker Value
Unknown
CVE-2006-1552
Disclosure Date: March 31, 2006 (last updated February 22, 2025)
Integer overflow in ImageIO in Apple Mac OS X 10.4 up to 10.4.5 allows remote attackers to cause a denial of service (crash) via a crafted JPEG image with malformed JPEG metadata, as demonstrated using Safari, aka "Deja-Doom".
0
Attacker Value
Unknown
CVE-2005-4678
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
Apple Safari 2.0.2 (aka 416.12) allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trusted site within a form to the malicious site. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2005-4504
Disclosure Date: December 22, 2005 (last updated February 22, 2025)
The khtml::RenderTableSection::ensureRows function in KHTMLParser in Apple Mac OS X 10.4.3 and earlier, as used by Safari and TextEdit, allows remote attackers to cause a denial of service (memory consumption and application crash) via HTML files with a large ROWSPAN attribute in a TD tag.
0
Attacker Value
Unknown
CVE-2005-3897
Disclosure Date: November 29, 2005 (last updated February 22, 2025)
Apple Safari 2.0.2 allows remote attackers to cause a denial of service (system slowdown) via a Javascript BODY onload event that calls the window function.
0