CVE
- Id
- 43981
- CVE No.
- CVE-2010-1397
- Status
- Candidate
- Description
- Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to a layout change during selection rendering and the DOCUMENT_POSITION_DISCONNECTED attribute in a container of an unspecified type.
- Phase
- Assigned (20100415)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
479310 | 43981 | CVE-2010-1397 | BUGTRAQ:20100608 ZDI-10-095: Apple Webkit DOCUMENT_POSITION_DISCONNECTED Attribute Remote Code Execution Vulnerability | View |
479311 | 43981 | CVE-2010-1397 | URL:http://www.securityfocus.com/archive/1/archive/1/511721/100/0/threaded | View |
479312 | 43981 | CVE-2010-1397 | MISC:http://www.zerodayinitiative.com/advisories/ZDI-10-095 | View |
479313 | 43981 | CVE-2010-1397 | CONFIRM:http://support.apple.com/kb/HT4196 | View |
479314 | 43981 | CVE-2010-1397 | CONFIRM:http://support.apple.com/kb/HT4220 | View |
479315 | 43981 | CVE-2010-1397 | CONFIRM:http://support.apple.com/kb/HT4225 | View |
479316 | 43981 | CVE-2010-1397 | APPLE:APPLE-SA-2010-06-07-1 | View |
479317 | 43981 | CVE-2010-1397 | URL:http://lists.apple.com/archives/security-announce/2010/Jun/msg00000.html | View |
479318 | 43981 | CVE-2010-1397 | APPLE:APPLE-SA-2010-06-16-1 | View |
479319 | 43981 | CVE-2010-1397 | URL:http://lists.apple.com/archives/security-announce/2010//Jun/msg00002.html | View |
479320 | 43981 | CVE-2010-1397 | APPLE:APPLE-SA-2010-06-21-1 | View |
479321 | 43981 | CVE-2010-1397 | URL:http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html | View |
479322 | 43981 | CVE-2010-1397 | MANDRIVA:MDVSA-2011:039 | View |
479323 | 43981 | CVE-2010-1397 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2011:039 | View |
479324 | 43981 | CVE-2010-1397 | SUSE:SUSE-SR:2011:002 | View |
479325 | 43981 | CVE-2010-1397 | URL:http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html | View |
479326 | 43981 | CVE-2010-1397 | UBUNTU:USN-1006-1 | View |
479327 | 43981 | CVE-2010-1397 | URL:http://www.ubuntu.com/usn/USN-1006-1 | View |
479328 | 43981 | CVE-2010-1397 | BID:40620 | View |
479329 | 43981 | CVE-2010-1397 | URL:http://www.securityfocus.com/bid/40620 | View |
479330 | 43981 | CVE-2010-1397 | OVAL:oval:org.mitre.oval:def:6912 | View |
479331 | 43981 | CVE-2010-1397 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6912 | View |
479332 | 43981 | CVE-2010-1397 | SECTRACK:1024067 | View |
479333 | 43981 | CVE-2010-1397 | URL:http://securitytracker.com/id?1024067 | View |
479334 | 43981 | CVE-2010-1397 | SECUNIA:40105 | View |
479335 | 43981 | CVE-2010-1397 | URL:http://secunia.com/advisories/40105 | View |
479336 | 43981 | CVE-2010-1397 | SECUNIA:40196 | View |
479337 | 43981 | CVE-2010-1397 | URL:http://secunia.com/advisories/40196 | View |
479338 | 43981 | CVE-2010-1397 | SECUNIA:41856 | View |
479339 | 43981 | CVE-2010-1397 | URL:http://secunia.com/advisories/41856 | View |
479340 | 43981 | CVE-2010-1397 | SECUNIA:43068 | View |
479341 | 43981 | CVE-2010-1397 | URL:http://secunia.com/advisories/43068 | View |
479342 | 43981 | CVE-2010-1397 | VUPEN:ADV-2010-1373 | View |
479343 | 43981 | CVE-2010-1397 | URL:http://www.vupen.com/english/advisories/2010/1373 | View |
479344 | 43981 | CVE-2010-1397 | VUPEN:ADV-2010-1512 | View |
479345 | 43981 | CVE-2010-1397 | URL:http://www.vupen.com/english/advisories/2010/1512 | View |
479346 | 43981 | CVE-2010-1397 | VUPEN:ADV-2010-2722 | View |
479347 | 43981 | CVE-2010-1397 | URL:http://www.vupen.com/english/advisories/2010/2722 | View |
479348 | 43981 | CVE-2010-1397 | VUPEN:ADV-2011-0212 | View |
479349 | 43981 | CVE-2010-1397 | URL:http://www.vupen.com/english/advisories/2011/0212 | View |
479350 | 43981 | CVE-2010-1397 | VUPEN:ADV-2011-0552 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
35777 | JVNDB-2010-001557 | Apple Safari の WebKit の Cascading Style Sheets 実装における任意のコードを実行される脆弱性 | Apple Safari の WebKit の Cascading Style Sheets (CSS) 実装には、:first-letter 疑似要素の処理に不備があるため、任意のコードを実行される、またはサービス運用妨害 (DoS) 状態となる脆弱性が存在します。 | CVE-2010-1401 | 43981 | 9.3 | http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001557.html | View |