CVE
- Id
- 102769
- CVE No.
- CVE-2017-5949
- Status
- Candidate
- Description
- JavaScriptCore in WebKit, as distributed in Safari Technology Preview Release 22, allows remote attackers to cause a denial of service (heap-based out-of-bounds write and application crash) or possibly have unspecified other impact via crafted JavaScript code that triggers access to red-zone memory locations, related to jit/ThunkGenerators.cpp, llint/LowLevelInterpreter32_64.asm, and llint/LowLevelInterpreter64.asm.
- Phase
- Assigned (20170209)
- Votes
- None (candidate not yet proposed)
- Comments