Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-1700

Опубликовано: 10 июн. 2009
Источник: debian
EPSS Низкий

Описание

The XSLT implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle redirects, which allows remote attackers to read XML content from arbitrary web pages via a crafted document.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
webkitfixed1.1.12-1package
webkitno-dsalennypackage
kdelibsnot-affectedpackage
kde4libsnot-affectedpackage
qt4-x11fixed4:4.6.2-4package
qt4-x11no-dsalennypackage

Примечания

  • QT4 might be fixed earlier, but only 4.6.2 was checked against

  • http://trac.webkit.org/changeset/38065

EPSS

Процентиль: 84%
0.02619
Низкий

Связанные уязвимости

ubuntu
около 17 лет назад

The XSLT implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle redirects, which allows remote attackers to read XML content from arbitrary web pages via a crafted document.

nvd
около 17 лет назад

The XSLT implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle redirects, which allows remote attackers to read XML content from arbitrary web pages via a crafted document.

github
больше 4 лет назад

The XSLT implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle redirects, which allows remote attackers to read XML content from arbitrary web pages via a crafted document.

EPSS

Процентиль: 84%
0.02619
Низкий