CVE
- Id
- 39146
- CVE No.
- CVE-2009-1711
- Status
- Candidate
- Description
- WebKit in Apple Safari before 4.0 does not properly initialize memory for Attr DOM objects, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted HTML document.
- Phase
- Assigned (20090520)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
| Id | CVE Id | CVE No. | Reference | Actions |
|---|---|---|---|---|
| 430296 | 39146 | CVE-2009-1711 | CONFIRM:http://support.apple.com/kb/HT3613 | View |
| 430297 | 39146 | CVE-2009-1711 | APPLE:APPLE-SA-2009-06-08-1 | View |
| 430298 | 39146 | CVE-2009-1711 | URL:http://lists.apple.com/archives/security-announce/2009/jun/msg00002.html | View |
| 430299 | 39146 | CVE-2009-1711 | DEBIAN:DSA-1950 | View |
| 430300 | 39146 | CVE-2009-1711 | URL:http://www.debian.org/security/2009/dsa-1950 | View |
| 430301 | 39146 | CVE-2009-1711 | SUSE:SUSE-SR:2011:002 | View |
| 430302 | 39146 | CVE-2009-1711 | URL:http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html | View |
| 430303 | 39146 | CVE-2009-1711 | UBUNTU:USN-857-1 | View |
| 430304 | 39146 | CVE-2009-1711 | URL:http://www.ubuntu.com/usn/USN-857-1 | View |
| 430305 | 39146 | CVE-2009-1711 | UBUNTU:USN-836-1 | View |
| 430306 | 39146 | CVE-2009-1711 | URL:http://www.ubuntu.com/usn/USN-836-1 | View |
| 430307 | 39146 | CVE-2009-1711 | BID:35260 | View |
| 430308 | 39146 | CVE-2009-1711 | URL:http://www.securityfocus.com/bid/35260 | View |
| 430309 | 39146 | CVE-2009-1711 | BID:35310 | View |
| 430310 | 39146 | CVE-2009-1711 | URL:http://www.securityfocus.com/bid/35310 | View |
| 430311 | 39146 | CVE-2009-1711 | OSVDB:55015 | View |
| 430312 | 39146 | CVE-2009-1711 | URL:http://osvdb.org/55015 | View |
| 430313 | 39146 | CVE-2009-1711 | SECTRACK:1022345 | View |
| 430314 | 39146 | CVE-2009-1711 | URL:http://securitytracker.com/id?1022345 | View |
| 430315 | 39146 | CVE-2009-1711 | SECUNIA:35379 | View |
| 430316 | 39146 | CVE-2009-1711 | URL:http://secunia.com/advisories/35379 | View |
| 430317 | 39146 | CVE-2009-1711 | SECUNIA:37746 | View |
| 430318 | 39146 | CVE-2009-1711 | URL:http://secunia.com/advisories/37746 | View |
| 430319 | 39146 | CVE-2009-1711 | SECUNIA:36790 | View |
| 430320 | 39146 | CVE-2009-1711 | URL:http://secunia.com/advisories/36790 | View |
| 430321 | 39146 | CVE-2009-1711 | SECUNIA:43068 | View |
| 430322 | 39146 | CVE-2009-1711 | URL:http://secunia.com/advisories/43068 | View |
| 430323 | 39146 | CVE-2009-1711 | VUPEN:ADV-2009-1522 | View |
| 430324 | 39146 | CVE-2009-1711 | URL:http://www.vupen.com/english/advisories/2009/1522 | View |
| 430325 | 39146 | CVE-2009-1711 | VUPEN:ADV-2011-0212 | View |
| 430326 | 39146 | CVE-2009-1711 | URL:http://www.vupen.com/english/advisories/2011/0212 | View |
| 430327 | 39146 | CVE-2009-1711 | XF:safari-attrdom-code-execution(51265) | View |
Related JVN
| Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 40759 | JVNDB-2009-001765 | Apple Safari の WebKit における Web インスペクタに関するクロスサイトスクリプティングの脆弱性 | Apple Safari の WebKit にある Web インスペクタには、不正確な権限を持つスクリプト実行に関連した、クロスサイトスクリプティングの脆弱性が存在します。 | CVE-2009-1715 | 39146 | 4.3 | http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001765.html | View |