CVE
- Id
- 39127
- CVE No.
- CVE-2009-1692
- Status
- Candidate
- Description
- WebKit before r41741, as used in Apple iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Safari, and other software, allows remote attackers to cause a denial of service (memory consumption or device reset) via a web page containing an HTMLSelectElement object with a large length attribute, related to the length property of a Select object.
- Phase
- Assigned (20090520)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
429818 | 39127 | CVE-2009-1692 | BUGTRAQ:20090715 Re: [GSEC-TZO-44-2009] One bug to rule them all - Firefox, IE, Safari,Opera, Chrome,Seamonkey,iPhone,iPod,Wii,PS3.... | View |
429819 | 39127 | CVE-2009-1692 | URL:http://www.securityfocus.com/archive/1/archive/1/504989/100/0/threaded | View |
429820 | 39127 | CVE-2009-1692 | BUGTRAQ:20090715 Re:[GSEC-TZO-44-2009] One bug to rule them all - Firefox, IE, Safari,Opera, Chrome,Seamonkey,iPhone,iPod,Wii,PS3.... | View |
429821 | 39127 | CVE-2009-1692 | URL:http://www.securityfocus.com/archive/1/archive/1/504988/100/0/threaded | View |
429822 | 39127 | CVE-2009-1692 | BUGTRAQ:20090715 [GSEC-TZO-44-2009] One bug to rule them all - Firefox, IE, Safari,Opera, Chrome,Seamonkey,iPhone,iPod,Wii,PS3.... | View |
429823 | 39127 | CVE-2009-1692 | URL:http://www.securityfocus.com/archive/1/archive/1/504969/100/0/threaded | View |
429824 | 39127 | CVE-2009-1692 | BUGTRAQ:20090716 Re[2]: [GSEC-TZO-44-2009] One bug to rule them all - Firefox, IE, Safari,Opera, Chrome,Seamonkey,iPhone,iPod,Wii,PS3.... | View |
429825 | 39127 | CVE-2009-1692 | URL:http://www.securityfocus.com/archive/1/archive/1/505006/100/0/threaded | View |
429826 | 39127 | CVE-2009-1692 | MILW0RM:9160 | View |
429827 | 39127 | CVE-2009-1692 | URL:http://www.milw0rm.com/exploits/9160 | View |
429828 | 39127 | CVE-2009-1692 | MISC:http://www.g-sec.lu/one-bug-to-rule-them-all.html | View |
429829 | 39127 | CVE-2009-1692 | MISC:https://bugs.webkit.org/show_bug.cgi?id=23319 | View |
429830 | 39127 | CVE-2009-1692 | CONFIRM:http://support.apple.com/kb/HT3639 | View |
429831 | 39127 | CVE-2009-1692 | CONFIRM:http://kb.palm.com/wps/portal/kb/na/pre/p100eww/sprint/solutions/article/50607_en.html#121 | View |
429832 | 39127 | CVE-2009-1692 | APPLE:APPLE-SA-2009-06-17-1 | View |
429833 | 39127 | CVE-2009-1692 | URL:http://lists.apple.com/archives/security-announce/2009/Jun/msg00005.html | View |
429834 | 39127 | CVE-2009-1692 | DEBIAN:DSA-1950 | View |
429835 | 39127 | CVE-2009-1692 | URL:http://www.debian.org/security/2009/dsa-1950 | View |
429836 | 39127 | CVE-2009-1692 | SUSE:SUSE-SR:2011:002 | View |
429837 | 39127 | CVE-2009-1692 | URL:http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html | View |
429838 | 39127 | CVE-2009-1692 | BID:35414 | View |
429839 | 39127 | CVE-2009-1692 | URL:http://www.securityfocus.com/bid/35414 | View |
429840 | 39127 | CVE-2009-1692 | BID:35446 | View |
429841 | 39127 | CVE-2009-1692 | URL:http://www.securityfocus.com/bid/35446 | View |
429842 | 39127 | CVE-2009-1692 | OSVDB:55242 | View |
429843 | 39127 | CVE-2009-1692 | URL:http://osvdb.org/55242 | View |
429844 | 39127 | CVE-2009-1692 | SECUNIA:37746 | View |
429845 | 39127 | CVE-2009-1692 | URL:http://secunia.com/advisories/37746 | View |
429846 | 39127 | CVE-2009-1692 | SECUNIA:43068 | View |
429847 | 39127 | CVE-2009-1692 | URL:http://secunia.com/advisories/43068 | View |
429848 | 39127 | CVE-2009-1692 | SECUNIA:36977 | View |
429849 | 39127 | CVE-2009-1692 | URL:http://secunia.com/advisories/36977 | View |
429850 | 39127 | CVE-2009-1692 | VUPEN:ADV-2009-1621 | View |
429851 | 39127 | CVE-2009-1692 | URL:http://www.vupen.com/english/advisories/2009/1621 | View |
429852 | 39127 | CVE-2009-1692 | VUPEN:ADV-2011-0212 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
40765 | JVNDB-2009-001771 | 複数の Apple 製品における Safari ユーザのセッションを追跡可能な脆弱性 | 複数の Apple 製品の WebKit には、JavaScript アプリケーションにおいて予想可能な乱数を使用するため、リモートの Web サーバが Safari ユーザのセッションを追跡可能な脆弱性が存在します。 | CVE-2009-1696 | 39127 | 5 | http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001771.html | View |