CVE-2010-3812
published 2010-11-22CVE-2010-3812: Integer overflow in the Text::wholeText method in dom/Text.cpp in WebKit, as used in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and…
PriorityP343critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
6.51%
93.0th percentile
Integer overflow in the Text::wholeText method in dom/Text.cpp in WebKit, as used in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4; webkitgtk before 1.2.6; and possibly other products allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving Text objects.
Affected
53 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | safari | <= 5.0.2 | — |
| apple | safari | <= 4.1.2 | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
WebKit vulnerabilities
vendor_ubuntu·2011-08-23
CVE-2010-1824 WebKit vulnerabilities
Title: WebKit vulnerabilities
Summary: Multiple security vulnerabilities were fixed in WebKit.
A large number of security issues were discovered in the WebKit browser and
JavaScript engines. If a user were tricked into viewing a malicious
website, a remote attacker could exploit a variety of issues related to web
browser security, including cross-site scripting attacks, denial of
service attacks, and arbitrary code execution.
Instructions: After a standard system update you need to restart any applications that
use WebKit, such as Epiphany and Midori, to make all the necessary changes.
Red Hat
webkit: Integer overflow in WebKit's handling of Text objects
vendor_redhat·2010-01-01·CVSS 9.3
CVE-2010-3812 [CRITICAL] CWE-190 webkit: Integer overflow in WebKit's handling of Text objects
webkit: Integer overflow in WebKit's handling of Text objects
Integer overflow in the Text::wholeText method in dom/Text.cpp in WebKit, as used in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4; webkitgtk before 1.2.6; and possibly other products allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving Text objects.
GHSA
GHSA-5p66-5j6r-4m29: Integer overflow in the Text::wholeText method in dom/Text
ghsa_unreviewed·2022-05-17
CVE-2010-3812 [HIGH] GHSA-5p66-5j6r-4m29: Integer overflow in the Text::wholeText method in dom/Text
Integer overflow in the Text::wholeText method in dom/Text.cpp in WebKit, as used in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4; webkitgtk before 1.2.6; and possibly other products allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving Text objects.
OSV
CVE-2010-3812: Integer overflow in the Text::wholeText method in dom/Text
osv·2010-11-22·CVSS 9.3
CVE-2010-3812 [CRITICAL] CVE-2010-3812: Integer overflow in the Text::wholeText method in dom/Text
Integer overflow in the Text::wholeText method in dom/Text.cpp in WebKit, as used in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4; webkitgtk before 1.2.6; and possibly other products allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving Text objects.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-4198 CVE-2010-4197 CVE-2010-4204 CVE-2010-4206 CVE-2010-3812 CVE-2010-3813 CVE-2010-4577 CVE-2010-3255 CVE-2010-3119 webkitgtk various flaws [fedora-13]
bugzilla·2011-01-04·CVSS 10.0
CVE-2010-4198 [CRITICAL] CVE-2010-4198 CVE-2010-4197 CVE-2010-4204 CVE-2010-4206 CVE-2010-3812 CVE-2010-3813 CVE-2010-4577 CVE-2010-3255 CVE-2010-3119 webkitgtk various flaws [fedora-13]
CVE-2010-4198 CVE-2010-4197 CVE-2010-4204 CVE-2010-4206 CVE-2010-3812 CVE-2010-3813 CVE-2010-4577 CVE-2010-3255 CVE-2010-3119 webkitgtk various flaws [fedora-13]
fedora-13 tracking bug for webkitgtk: see blocks bug list for full details of the security issue(s).
This bug is never intended to be made public, please put any public notes
in the 'blocks' bugs.
[bug automatically created by: add-tracking-bugs]
Discussion:
Adding parent bug CVE-2010-4197
New bodhi update url:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=656118,656115
---
Adding parent bug CVE-2010-4206
New bodhi update url:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=656118,656115,656129
---
Adding parent bug CVE-2010-3812
New bodhi update url:
https://admin.fedoraproject.org/up
Bugzilla
CVE-2010-3812 webkit: Integer overflow in WebKit's handling of Text objects
bugzilla·2011-01-04·CVSS 9.3
CVE-2010-3812 [CRITICAL] CVE-2010-3812 webkit: Integer overflow in WebKit's handling of Text objects
CVE-2010-3812 webkit: Integer overflow in WebKit's handling of Text objects
Common Vulnerabilities and Exposures assigned an identifier CVE-2010-3812 to
the following vulnerability:
Name: CVE-2010-3812
Status: Candidate
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3812
Assigned: 20101007
Reference: CONFIRM:http://support.apple.com/kb/HT4455
Reference: CONFIRM:http://support.apple.com/kb/HT4456
Upstream:
Chrome Bug: http://code.google.com/p/chromium/issues/detail?id=57347
Bugzilla: https://bugs.webkit.org/show_bug.cgi?id=46848
Trac: http://trac.webkit.org/changeset/68705
This is fixed in webkitgtk 1.2.6
Discussion:
Created webkitgtk tracking bugs for this issue
Affects: fedora-13 [bug 667027]
---
This issue has been addressed in following products:
Red Hat Enterpris
http://lists.apple.com/archives/security-announce/2010//Nov/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2010//Nov/msg00003.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-January/052906.htmlhttp://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.htmlhttp://secunia.com/advisories/42314http://secunia.com/advisories/43068http://secunia.com/advisories/43086http://support.apple.com/kb/HT4455http://support.apple.com/kb/HT4456http://trac.webkit.org/changeset/68705http://www.mandriva.com/security/advisories?name=MDVSA-2011:039http://www.redhat.com/support/errata/RHSA-2011-0177.htmlhttp://www.securityfocus.com/bid/44960http://www.vupen.com/english/advisories/2010/3046http://www.vupen.com/english/advisories/2011/0212http://www.vupen.com/english/advisories/2011/0216http://www.vupen.com/english/advisories/2011/0552http://www.zerodayinitiative.com/advisories/ZDI-10-257/https://bugs.webkit.org/show_bug.cgi?id=46848https://bugzilla.redhat.com/show_bug.cgi?id=667022https://exchange.xforce.ibmcloud.com/vulnerabilities/63350https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11689http://lists.apple.com/archives/security-announce/2010//Nov/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2010//Nov/msg00003.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-January/052906.htmlhttp://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.htmlhttp://secunia.com/advisories/42314http://secunia.com/advisories/43068http://secunia.com/advisories/43086http://support.apple.com/kb/HT4455http://support.apple.com/kb/HT4456http://trac.webkit.org/changeset/68705http://www.mandriva.com/security/advisories?name=MDVSA-2011:039http://www.redhat.com/support/errata/RHSA-2011-0177.htmlhttp://www.securityfocus.com/bid/44960http://www.vupen.com/english/advisories/2010/3046http://www.vupen.com/english/advisories/2011/0212http://www.vupen.com/english/advisories/2011/0216http://www.vupen.com/english/advisories/2011/0552http://www.zerodayinitiative.com/advisories/ZDI-10-257/https://bugs.webkit.org/show_bug.cgi?id=46848https://bugzilla.redhat.com/show_bug.cgi?id=667022https://exchange.xforce.ibmcloud.com/vulnerabilities/63350https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11689
2010-11-22
Published