Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-1760

Опубликовано: 19 авг. 2010
Источник: debian

Описание

loader/DocumentThreadableLoader.cpp in the XMLHttpRequest implementation in WebCore in WebKit before r58409 does not properly handle credentials during a cross-origin synchronous request, which has unspecified impact and remote attack vectors, aka rdar problem 7905150.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
webkitfixed1.2.2-1package
webkitno-dsalennypackage
chromium-browserfixed5.0.375.99~r51029-2package

Примечания

  • https://bugs.webkit.org/show_bug.cgi?id=37781

  • http://trac.webkit.org/changeset/58409

Связанные уязвимости

ubuntu
больше 15 лет назад

loader/DocumentThreadableLoader.cpp in the XMLHttpRequest implementation in WebCore in WebKit before r58409 does not properly handle credentials during a cross-origin synchronous request, which has unspecified impact and remote attack vectors, aka rdar problem 7905150.

nvd
больше 15 лет назад

loader/DocumentThreadableLoader.cpp in the XMLHttpRequest implementation in WebCore in WebKit before r58409 does not properly handle credentials during a cross-origin synchronous request, which has unspecified impact and remote attack vectors, aka rdar problem 7905150.

github
больше 3 лет назад

loader/DocumentThreadableLoader.cpp in the XMLHttpRequest implementation in WebCore in WebKit before r58409 does not properly handle credentials during a cross-origin synchronous request, which has unspecified impact and remote attack vectors, aka rdar problem 7905150.