CVE
- Id
- 32434
- CVE No.
- CVE-2008-2317
- Status
- Candidate
- Description
- WebCore in Apple Safari does not properly perform garbage collection of JavaScript document elements, which allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption and application crash) via a reference to the ownerNode property of a copied CSSStyleSheet object of a STYLE element, as originally demonstrated on Apple iPhone before 2.0 and iPod touch before 2.0, a different vulnerability than CVE-2008-1590.
- Phase
- Assigned (20080518)
- Votes
- None (candidate not yet proposed)
- Comments