CVE
- Id
- 44000
- CVE No.
- CVE-2010-1416
- Status
- Candidate
- Description
- WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, does not properly restrict the reading of a canvas that contains an SVG image pattern from a different web site, which allows remote attackers to read images from other sites via a crafted canvas, related to a "cross-site image capture issue."
- Phase
- Assigned (20100415)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
| Id | CVE Id | CVE No. | Reference | Actions |
|---|---|---|---|---|
| 480062 | 44000 | CVE-2010-1416 | CONFIRM:http://support.apple.com/kb/HT4196 | View |
| 480063 | 44000 | CVE-2010-1416 | CONFIRM:http://support.apple.com/kb/HT4220 | View |
| 480064 | 44000 | CVE-2010-1416 | CONFIRM:http://support.apple.com/kb/HT4225 | View |
| 480065 | 44000 | CVE-2010-1416 | CONFIRM:http://support.apple.com/kb/HT4456 | View |
| 480066 | 44000 | CVE-2010-1416 | APPLE:APPLE-SA-2010-06-07-1 | View |
| 480067 | 44000 | CVE-2010-1416 | URL:http://lists.apple.com/archives/security-announce/2010/Jun/msg00000.html | View |
| 480068 | 44000 | CVE-2010-1416 | APPLE:APPLE-SA-2010-06-16-1 | View |
| 480069 | 44000 | CVE-2010-1416 | URL:http://lists.apple.com/archives/security-announce/2010//Jun/msg00002.html | View |
| 480070 | 44000 | CVE-2010-1416 | APPLE:APPLE-SA-2010-06-21-1 | View |
| 480071 | 44000 | CVE-2010-1416 | URL:http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html | View |
| 480072 | 44000 | CVE-2010-1416 | APPLE:APPLE-SA-2010-11-22-1 | View |
| 480073 | 44000 | CVE-2010-1416 | URL:http://lists.apple.com/archives/security-announce/2010//Nov/msg00003.html | View |
| 480074 | 44000 | CVE-2010-1416 | MANDRIVA:MDVSA-2011:039 | View |
| 480075 | 44000 | CVE-2010-1416 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2011:039 | View |
| 480076 | 44000 | CVE-2010-1416 | SUSE:SUSE-SR:2011:002 | View |
| 480077 | 44000 | CVE-2010-1416 | URL:http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html | View |
| 480078 | 44000 | CVE-2010-1416 | UBUNTU:USN-1006-1 | View |
| 480079 | 44000 | CVE-2010-1416 | URL:http://www.ubuntu.com/usn/USN-1006-1 | View |
| 480080 | 44000 | CVE-2010-1416 | BID:40620 | View |
| 480081 | 44000 | CVE-2010-1416 | URL:http://www.securityfocus.com/bid/40620 | View |
| 480082 | 44000 | CVE-2010-1416 | OVAL:oval:org.mitre.oval:def:7401 | View |
| 480083 | 44000 | CVE-2010-1416 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7401 | View |
| 480084 | 44000 | CVE-2010-1416 | SECTRACK:1024067 | View |
| 480085 | 44000 | CVE-2010-1416 | URL:http://securitytracker.com/id?1024067 | View |
| 480086 | 44000 | CVE-2010-1416 | SECUNIA:40105 | View |
| 480087 | 44000 | CVE-2010-1416 | URL:http://secunia.com/advisories/40105 | View |
| 480088 | 44000 | CVE-2010-1416 | SECUNIA:40196 | View |
| 480089 | 44000 | CVE-2010-1416 | URL:http://secunia.com/advisories/40196 | View |
| 480090 | 44000 | CVE-2010-1416 | SECUNIA:41856 | View |
| 480091 | 44000 | CVE-2010-1416 | URL:http://secunia.com/advisories/41856 | View |
| 480092 | 44000 | CVE-2010-1416 | SECUNIA:42314 | View |
| 480093 | 44000 | CVE-2010-1416 | URL:http://secunia.com/advisories/42314 | View |
| 480094 | 44000 | CVE-2010-1416 | SECUNIA:43068 | View |
| 480095 | 44000 | CVE-2010-1416 | URL:http://secunia.com/advisories/43068 | View |
| 480096 | 44000 | CVE-2010-1416 | VUPEN:ADV-2010-1373 | View |
| 480097 | 44000 | CVE-2010-1416 | URL:http://www.vupen.com/english/advisories/2010/1373 | View |
| 480098 | 44000 | CVE-2010-1416 | VUPEN:ADV-2010-1512 | View |
| 480099 | 44000 | CVE-2010-1416 | URL:http://www.vupen.com/english/advisories/2010/1512 | View |
| 480100 | 44000 | CVE-2010-1416 | VUPEN:ADV-2010-2722 | View |
| 480101 | 44000 | CVE-2010-1416 | URL:http://www.vupen.com/english/advisories/2010/2722 | View |
| 480102 | 44000 | CVE-2010-1416 | VUPEN:ADV-2011-0212 | View |
| 480103 | 44000 | CVE-2010-1416 | URL:http://www.vupen.com/english/advisories/2011/0212 | View |
| 480104 | 44000 | CVE-2010-1416 | VUPEN:ADV-2011-0552 | View |
Related JVN
| Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 31798 | JVNDB-2011-002038 | Windows 上で稼動する Apple Safari の CFNetwork におけるクロスサイトスクリプティングの脆弱性 | Windows 上で稼動する Apple Safari の CFNetwork には、クロスサイトスクリプティングの脆弱性が存在します。 | CVE-2010-1420 | 44000 | 4.3 | http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-002038.html | View |