CVE-2010-3259
published 2010-09-07CVE-2010-3259: WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, does not properly restrict…
PriorityP418medium4.3CVSS 2.0
AVNACMAuNCPINAN
EPSS
1.60%
73.3th percentile
WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, does not properly restrict read access to images derived from CANVAS elements, which allows remote attackers to bypass the Same Origin Policy and obtain potentially sensitive image data via a crafted web site.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | iphone_os | < 4.2 | 4.2 |
| apple | safari | < 4.1.3 | 4.1.3 |
| apple | safari | >= 5.0 < 5.0.3 | 5.0.3 |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| chrome | < 6.0.472.53 | 6.0.472.53 | |
| webkitgtk | webkitgtk | < 1.2.6 | 1.2.6 |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
webkit: cross-origin image theft
vendor_redhat·2010-09-02·CVSS 4.3
CVE-2010-3259 [MEDIUM] webkit: cross-origin image theft
webkit: cross-origin image theft
WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, does not properly restrict read access to images derived from CANVAS elements, which allows remote attackers to bypass the Same Origin Policy and obtain potentially sensitive image data via a crafted web site.
GHSA
GHSA-ch35-3h8w-gw7f: WebKit, as used in Apple Safari before 4
ghsa_unreviewed·2022-05-13
CVE-2010-3259 [MEDIUM] CWE-200 GHSA-ch35-3h8w-gw7f: WebKit, as used in Apple Safari before 4
WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, does not properly restrict read access to images derived from CANVAS elements, which allows remote attackers to bypass the Same Origin Policy and obtain potentially sensitive image data via a crafted web site.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-3113 CVE-2010-1814 CVE-2010-1812 CVE-2010-1815 CVE-2010-3115 CVE-2010-1807 CVE-2010-3114 CVE-2010-3116 CVE-2010-3257 CVE-2010-3259 webkitgtk various flaws [fedora-all]
bugzilla·2010-10-05·CVSS 9.3
CVE-2010-3113 [CRITICAL] CVE-2010-3113 CVE-2010-1814 CVE-2010-1812 CVE-2010-1815 CVE-2010-3115 CVE-2010-1807 CVE-2010-3114 CVE-2010-3116 CVE-2010-3257 CVE-2010-3259 webkitgtk various flaws [fedora-all]
CVE-2010-3113 CVE-2010-1814 CVE-2010-1812 CVE-2010-1815 CVE-2010-3115 CVE-2010-1807 CVE-2010-3114 CVE-2010-3116 CVE-2010-3257 CVE-2010-3259 webkitgtk various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update submission link:
https://adm
Bugzilla
CVE-2010-3259 webkit: cross-origin image theft
bugzilla·2010-10-05·CVSS 4.3
CVE-2010-3259 [MEDIUM] CVE-2010-3259 webkit: cross-origin image theft
CVE-2010-3259 webkit: cross-origin image theft
Common Vulnerabilities and Exposures assigned an identifier CVE-2010-3259 to
the following vulnerability:
Google Chrome before 6.0.472.53 does not properly restrict read access to images, which allows remote attackers to bypass the Same Origin Policy and obtain potentially sensitive information via unspecified vectors.
References:
* Chrome bug: http://code.google.com/p/chromium/issues/detail?id=53001
* Bugzilla: https://bugs.webkit.org/show_bug.cgi?id=44399
* Trac: http://trac.webkit.org/changeset/65826
This issue has been corrected in WebKitGTK 1.2.5.
Discussion:
Created webkitgtk tracking bugs for this issue
Affects: fedora-all [bug 640382]
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RH
http://code.google.com/p/chromium/issues/detail?id=53001http://googlechromereleases.blogspot.com/2010/09/stable-and-beta-channel-updates.htmlhttp://lists.apple.com/archives/security-announce/2010//Nov/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2010//Nov/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.htmlhttp://secunia.com/advisories/41856http://secunia.com/advisories/42314http://secunia.com/advisories/43068http://secunia.com/advisories/43086http://support.apple.com/kb/HT4455http://support.apple.com/kb/HT4456http://www.mandriva.com/security/advisories?name=MDVSA-2011:039http://www.redhat.com/support/errata/RHSA-2011-0177.htmlhttp://www.securityfocus.com/bid/44206http://www.ubuntu.com/usn/USN-1006-1http://www.vupen.com/english/advisories/2010/2722http://www.vupen.com/english/advisories/2010/3046http://www.vupen.com/english/advisories/2011/0212http://www.vupen.com/english/advisories/2011/0216http://www.vupen.com/english/advisories/2011/0552https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11221https://technet.microsoft.com/library/security/msvr11-002http://code.google.com/p/chromium/issues/detail?id=53001http://googlechromereleases.blogspot.com/2010/09/stable-and-beta-channel-updates.htmlhttp://lists.apple.com/archives/security-announce/2010//Nov/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2010//Nov/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.htmlhttp://secunia.com/advisories/41856http://secunia.com/advisories/42314http://secunia.com/advisories/43068http://secunia.com/advisories/43086http://support.apple.com/kb/HT4455http://support.apple.com/kb/HT4456http://www.mandriva.com/security/advisories?name=MDVSA-2011:039http://www.redhat.com/support/errata/RHSA-2011-0177.htmlhttp://www.securityfocus.com/bid/44206http://www.ubuntu.com/usn/USN-1006-1http://www.vupen.com/english/advisories/2010/2722http://www.vupen.com/english/advisories/2010/3046http://www.vupen.com/english/advisories/2011/0212http://www.vupen.com/english/advisories/2011/0216http://www.vupen.com/english/advisories/2011/0552https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11221https://technet.microsoft.com/library/security/msvr11-002
2010-09-07
Published