Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.800834
Categoría:Denial of Service
Título:Apple Safari DoS or XSS Vulnerability (Jul 2009)
Resumen:Apple Safari Web Browser is prone to Denial of Service or Cross-Site Scripting vulnerability.
Descripción:Summary:
Apple Safari Web Browser is prone to Denial of Service or Cross-Site Scripting vulnerability.

Vulnerability Insight:
- Error in 'WebKit' is allow user to inject arbitrary web script or HTML via
vectors related to parent and top objects.

- Error in 'WebKit' is fails to handle numeric character references via a
crafted HTML document.

Vulnerability Impact:
Successful exploitation will let the attacker execute arbitrary code and can
cause memory corruption, XSS attacks and can deny the service in the victim's system.

Affected Software/OS:
Apple Safari version prior to 4.0.2 on Windows.

Solution:
Upgrade to Safari version 4.0.2 (4.30.19.1).

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2009-1724
http://lists.apple.com/archives/security-announce/2009/Jul/msg00000.html
http://lists.apple.com/archives/security-announce/2009/Sep/msg00001.html
BugTraq ID: 35441
http://www.securityfocus.com/bid/35441
http://osvdb.org/55738
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6208
http://www.securitytracker.com/id?1022525
http://secunia.com/advisories/35758
http://secunia.com/advisories/36677
http://secunia.com/advisories/43068
SuSE Security Announcement: SUSE-SR:2011:002 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html
http://www.vupen.com/english/advisories/2009/1827
http://www.vupen.com/english/advisories/2011/0212
Common Vulnerability Exposure (CVE) ID: CVE-2009-1725
BugTraq ID: 35607
http://www.securityfocus.com/bid/35607
Debian Security Information: DSA-1950 (Google Search)
http://www.debian.org/security/2009/dsa-1950
https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01200.html
https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01177.html
https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01199.html
https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01196.html
https://www.redhat.com/archives/fedora-package-announce/2009-August/msg00931.html
https://www.redhat.com/archives/fedora-package-announce/2009-August/msg00933.html
http://www.mandriva.com/security/advisories?name=MDVSA-2009:330
http://osvdb.org/55739
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5777
http://www.securitytracker.com/id?1022526
http://secunia.com/advisories/36057
http://secunia.com/advisories/36062
http://secunia.com/advisories/36347
http://secunia.com/advisories/36790
http://secunia.com/advisories/37746
http://www.ubuntu.com/usn/USN-836-1
http://www.ubuntu.com/usn/USN-857-1
CopyrightCopyright (C) 2009 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.