Severity
4.3MEDIUMNVD
EPSS
0.7%
top 28.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 28
Latest updateMay 1

Description

Unspecified vulnerability in Apple Safari 3.1.1 allows remote attackers to cause a denial of service (application crash) via JavaScript code that calls document.write in an infinite loop.

CVSS vector

AV:N/AC:M/C:N/I:N/A:PExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

NVDapple/safari3.1.1

🔴Vulnerability Details

3
GHSA
GHSA-m39r-vmgh-2hwm: Unspecified vulnerability in Apple Safari 32022-05-01
Kernel
Merge tag 'xfs-5.17-merge-5' of git://git.kernel.org/pub/scm/fs/xfs/xfs-linux2022-01-21
Kernel
namei: allow restricted O_CREAT of FIFOs and regular files2018-08-23

💥Exploits & PoCs

31
Exploit-DB
Microsoft Windows 7/8.1/2008 R2/2012 R2/2016 R2 - 'EternalBlue' SMB Remote Code Execution (MS17-010)2017-07-11
Exploit-DB
Microsoft Windows NT/2000/2003/2008/XP/Vista/7/8 - 'EPATHOBJ' Local Ring2013-06-03
Exploit-DB
Microsoft SQL Server - sp_replwritetovarbin Memory Corruption (MS09-004) (via SQL Injection) (Metasploit)2011-02-08
Exploit-DB
Microsoft SQL Server - sp_replwritetovarbin Memory Corruption (MS09-004) (Metasploit)2011-01-24
Exploit-DB
SasCam WebCam Server 2.6.5 - ActiveX Overwrite (SEH)2010-07-03

📋Vendor Advisories

5
Red Hat
jasper: integer overflow in the jas_matrix_create() function2015-12-24
Red Hat
bind: implement source UDP port randomization (CERT VU#800113)2008-07-08
Red Hat
WebKit: DoS via JavaScript that calls document.write in an infinite loop2008-04-22
Juniper
CVE-2008-1180: Cross-site scripting (XSS) vulnerability in dana-na/auth/rdremediate.cgi in Juniper Networks Secure Access 2000 5.5 R1 build 11711 allows remote attac2008-03-06
Juniper
CVE-2008-1181: Juniper Networks Secure Access 2000 5.5 R1 (build 11711) allows remote attackers to obtain sensitive information via a direct request for remediate.cg2008-03-06

💬Community

2
Bugzilla
CVE-2009-0259 openoffice.org: text converter memory corruption via a crafted (1) .doc, (2) .wri, or (3) .rtf Word97 file2008-12-10
Bugzilla
CVE-2008-2000 WebKit: DoS via JavaScript that calls document.write in an infinite loop2008-05-06