Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-3812

Опубликовано: 22 нояб. 2010
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 9.3

Описание

Integer overflow in the Text::wholeText method in dom/Text.cpp in WebKit, as used in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4; webkitgtk before 1.2.6; and possibly other products allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving Text objects.

РелизСтатусПримечание
dapper

not-affected

no webkit
devel

not-affected

webkit isn't built
esm-infra-legacy/trusty

not-affected

webkit isn't built
esm-infra/xenial

not-affected

webkit isn't built
hardy

not-affected

no webkit
karmic

ignored

end of life
lucid

ignored

end of life
maverick

not-affected

webkit isn't built
natty

not-affected

webkit isn't built
oneiric

not-affected

webkit isn't built

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

ignored

no update available
esm-apps/xenial

ignored

no update available
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was ignored [no update available]]
hardy

DNE

karmic

DNE

lucid

DNE

maverick

ignored

end of life
natty

ignored

end of life
oneiric

ignored

end of life

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

esm-infra-legacy/trusty

DNE

hardy

ignored

end of life
karmic

ignored

end of life
lucid

released

1.2.7-0ubuntu0.10.04.1
maverick

released

1.2.7-0ubuntu0.10.10.1
natty

not-affected

oneiric

not-affected

precise

not-affected

Показывать по

РелизСтатусПримечание
devel

not-affected

2.4.9-2ubuntu2
esm-apps/xenial

not-affected

2.4.9-2ubuntu2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [2.4.8-1ubuntu1~ubuntu14.04.1]]
lucid

DNE

precise

DNE

quantal

DNE

saucy

DNE

trusty

not-affected

2.4.8-1ubuntu1~ubuntu14.04.1
trusty/esm

DNE

trusty was not-affected [2.4.8-1ubuntu1~ubuntu14.04.1]
upstream

needs-triage

Показывать по

EPSS

Процентиль: 91%
0.06675
Низкий

9.3 Critical

CVSS2

Связанные уязвимости

redhat
больше 15 лет назад

Integer overflow in the Text::wholeText method in dom/Text.cpp in WebKit, as used in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4; webkitgtk before 1.2.6; and possibly other products allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving Text objects.

nvd
больше 14 лет назад

Integer overflow in the Text::wholeText method in dom/Text.cpp in WebKit, as used in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4; webkitgtk before 1.2.6; and possibly other products allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving Text objects.

debian
больше 14 лет назад

Integer overflow in the Text::wholeText method in dom/Text.cpp in WebK ...

github
около 3 лет назад

Integer overflow in the Text::wholeText method in dom/Text.cpp in WebKit, as used in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4; webkitgtk before 1.2.6; and possibly other products allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving Text objects.

oracle-oval
больше 14 лет назад

ELSA-2011-0177: webkitgtk security update (MODERATE)

EPSS

Процентиль: 91%
0.06675
Низкий

9.3 Critical

CVSS2

Уязвимость CVE-2010-3812