CVE-2009-1709
published 2009-06-10CVE-2009-1709: Use-after-free vulnerability in the garbage-collection implementation in WebCore in WebKit in Apple Safari before 4.0 allows remote attackers to execute…
PriorityP336critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
6.92%
93.4th percentile
Use-after-free vulnerability in the garbage-collection implementation in WebCore in WebKit in Apple Safari before 4.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption and application crash) via an SVG animation element, related to SVG set objects, SVG marker elements, the targetElement attribute, and unspecified "caches."
Affected
26 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | safari | <= 4.0_beta | — |
| apple | safari | <= 3.2.3 | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-grpq-h627-xvm6: Use-after-free vulnerability in the garbage-collection implementation in WebCore in WebKit in Apple Safari before 4
ghsa_unreviewed·2022-05-02
CVE-2009-1709 [HIGH] GHSA-grpq-h627-xvm6: Use-after-free vulnerability in the garbage-collection implementation in WebCore in WebKit in Apple Safari before 4
Use-after-free vulnerability in the garbage-collection implementation in WebCore in WebKit in Apple Safari before 4.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption and application crash) via an SVG animation element, related to SVG set objects, SVG marker elements, the targetElement attribute, and unspecified "caches."
Ubuntu
KDE-Graphics vulnerabilities
vendor_ubuntu·2009-08-24
CVE-2009-0945 KDE-Graphics vulnerabilities
Title: KDE-Graphics vulnerabilities
Summary: KDE-Graphics vulnerabilities
It was discovered that KDE-Graphics did not properly handle certain
malformed SVG images. If a user were tricked into opening a specially
crafted SVG image, an attacker could cause a denial of service or possibly
execute arbitrary code with the privileges of the user invoking the
program.
Instructions: After a standard system upgrade you need to restart your session to effect
the necessary changes.
Red Hat
kdegraphics: KSVG Pointer use-after-free error in the SVG animation element (DoS, ACE)
vendor_redhat·2009-06-25·CVSS 9.3
CVE-2009-1709 [CRITICAL] CWE-416 kdegraphics: KSVG Pointer use-after-free error in the SVG animation element (DoS, ACE)
kdegraphics: KSVG Pointer use-after-free error in the SVG animation element (DoS, ACE)
Use-after-free vulnerability in the garbage-collection implementation in WebCore in WebKit in Apple Safari before 4.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption and application crash) via an SVG animation element, related to SVG set objects, SVG marker elements, the targetElement attribute, and unspecified "caches."
No detection rules found.
No public exploits indexed.
http://lists.apple.com/archives/security-announce/2009/jun/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.htmlhttp://osvdb.org/55013http://secunia.com/advisories/35379http://secunia.com/advisories/35576http://secunia.com/advisories/36461http://secunia.com/advisories/43068http://securitytracker.com/id?1022345http://support.apple.com/kb/HT3613http://www.mandriva.com/security/advisories?name=MDVSA-2010:182http://www.redhat.com/support/errata/RHSA-2009-1130.htmlhttp://www.securityfocus.com/bid/35260http://www.securityfocus.com/bid/35334http://www.vupen.com/english/advisories/2009/1522http://www.vupen.com/english/advisories/2011/0212http://www.zerodayinitiative.com/advisories/ZDI-09-034/https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10162https://usn.ubuntu.com/823-1/http://lists.apple.com/archives/security-announce/2009/jun/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.htmlhttp://osvdb.org/55013http://secunia.com/advisories/35379http://secunia.com/advisories/35576http://secunia.com/advisories/36461http://secunia.com/advisories/43068http://securitytracker.com/id?1022345http://support.apple.com/kb/HT3613http://www.mandriva.com/security/advisories?name=MDVSA-2010:182http://www.redhat.com/support/errata/RHSA-2009-1130.htmlhttp://www.securityfocus.com/bid/35260http://www.securityfocus.com/bid/35334http://www.vupen.com/english/advisories/2009/1522http://www.vupen.com/english/advisories/2011/0212http://www.zerodayinitiative.com/advisories/ZDI-09-034/https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10162https://usn.ubuntu.com/823-1/
2009-06-10
Published