Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-2454

Опубликовано: 25 июн. 2010
Источник: debian

Описание

Apple Safari does not properly manage the address bar between the request to open a URL and the retrieval of the new document's content, which might allow remote attackers to conduct spoofing attacks via a crafted HTML document, a related issue to CVE-2010-1206.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
webkitnot-affectedpackage
chromium-browsernot-affectedpackage

Примечания

  • i tested both firefox and safari poc's, and neither of them caused the

  • address bar to be spoofed in either webkit or chrome

  • this will be address in iceweasel in cve-2010-1206

Связанные уязвимости

ubuntu
больше 15 лет назад

Apple Safari does not properly manage the address bar between the request to open a URL and the retrieval of the new document's content, which might allow remote attackers to conduct spoofing attacks via a crafted HTML document, a related issue to CVE-2010-1206.

nvd
больше 15 лет назад

Apple Safari does not properly manage the address bar between the request to open a URL and the retrieval of the new document's content, which might allow remote attackers to conduct spoofing attacks via a crafted HTML document, a related issue to CVE-2010-1206.

github
больше 3 лет назад

Apple Safari does not properly manage the address bar between the request to open a URL and the retrieval of the new document's content, which might allow remote attackers to conduct spoofing attacks via a crafted HTML document, a related issue to CVE-2010-1206.