Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-1686

Опубликовано: 10 июн. 2009
Источник: debian
EPSS Низкий

Описание

WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle constant (aka const) declarations in a type-conversion operation during JavaScript exception handling, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
webkitfixed1.1.12-1package
webkitnot-affectedlennypackage
kdelibsnot-affectedpackage
kde4libsnot-affectedpackage
qt4-x11fixed4:4.6.2-4package
qt4-x11no-dsalennypackage

Примечания

  • QT4 might be fixed earlier, but only 4.6.2 was checked against

  • http://trac.webkit.org/changeset/31431

EPSS

Процентиль: 94%
0.07526
Низкий

Связанные уязвимости

ubuntu
около 17 лет назад

WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle constant (aka const) declarations in a type-conversion operation during JavaScript exception handling, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.

nvd
около 17 лет назад

WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle constant (aka const) declarations in a type-conversion operation during JavaScript exception handling, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.

github
больше 4 лет назад

WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle constant (aka const) declarations in a type-conversion operation during JavaScript exception handling, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.

EPSS

Процентиль: 94%
0.07526
Низкий