CVE

Id
32434  
CVE No.
CVE-2008-2317  
Status
Candidate  
Description
WebCore in Apple Safari does not properly perform garbage collection of JavaScript document elements, which allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption and application crash) via a reference to the ownerNode property of a copied CSSStyleSheet object of a STYLE element, as originally demonstrated on Apple iPhone before 2.0 and iPod touch before 2.0, a different vulnerability than CVE-2008-1590.  
Phase
Assigned (20080518)  
Votes
None (candidate not yet proposed)  
Comments