CVE-2010-1784Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple Safari

Severity
9.3CRITICALNVD
EPSS
3.5%
top 12.37%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 30
Latest updateMay 17

Description

The counters functionality in the Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and webkitgtk before 1.2.6; allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages1 packages

NVDapple/safari5.0+8

Patches

🔴Vulnerability Details

1
GHSA
GHSA-463m-jv3p-fxxc: The counters functionality in the Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 52022-05-17

📋Vendor Advisories

1
Red Hat
WebKit: multiple vulnerabilities in WebKitGTK2010-08-11

💬Community

2
Bugzilla
CVE-2010-1780 CVE-2010-1782 CVE-2010-1783 CVE-2010-1784 CVE-2010-1785 CVE-2010-1786 CVE-2010-1787 CVE-2010-1788 CVE-2010-1790 CVE-2010-1792 CVE-2010-1793 WebKit: multiple vulnerabilities in WebKitGTK 2010-09-07
Bugzilla
CVE-2010-1780 CVE-2010-1782 CVE-2010-1783 CVE-2010-1784 CVE-2010-1785 CVE-2010-1786 CVE-2010-1787 CVE-2010-1788 CVE-2010-1790 CVE-2010-1792 CVE-2010-1793 WebKit: multiple vulnerabilities in WebKitGTK2010-08-25