Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-1389

Опубликовано: 11 июн. 2010
Источник: debian

Описание

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows user-assisted remote attackers to inject arbitrary web script or HTML via vectors involving a (1) paste or (2) drag-and-drop operation for a selection.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
webkitfixed1.2.1-2package
webkitno-dsalennypackage
chromium-browserfixed5.0.342.9~r43360-1package

Примечания

  • https://bugs.webkit.org/show_bug.cgi?id=30019

  • https://bugs.webkit.org/show_bug.cgi?id=34148

  • https://bugs.webkit.org/show_bug.cgi?id=33970

  • http://trac.webkit.org/changeset/53442

  • http://trac.webkit.org/changeset/53835

  • http://trac.webkit.org/changeset/53659

Связанные уязвимости

ubuntu
больше 15 лет назад

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows user-assisted remote attackers to inject arbitrary web script or HTML via vectors involving a (1) paste or (2) drag-and-drop operation for a selection.

nvd
больше 15 лет назад

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows user-assisted remote attackers to inject arbitrary web script or HTML via vectors involving a (1) paste or (2) drag-and-drop operation for a selection.

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows user-assisted remote attackers to inject arbitrary web script or HTML via vectors involving a (1) paste or (2) drag-and-drop operation for a selection.