CVE-2011-0177
published 2011-03-23CVE-2011-0177: Multiple buffer overflows in Apple Type Services (ATS) in Apple Mac OS X before 10.6.7 allow remote attackers to execute arbitrary code via a document that…
PriorityP434medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
2.84%
85.2th percentile
Multiple buffer overflows in Apple Type Services (ATS) in Apple Mac OS X before 10.6.7 allow remote attackers to execute arbitrary code via a document that contains a crafted SFNT table in an embedded font.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | <= 10.6.6 | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x_server | <= 10.6.6 | — |
| apple | mac_os_x_server | — | — |
| apple | mac_os_x_server | — | — |
| apple | mac_os_x_server | — | — |
| apple | mac_os_x_server | — | — |
| apple | mac_os_x_server | — | — |
| apple | mac_os_x_server | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-1814 webkit: memory corruption flaw when handling form menus
bugzilla·2010-09-08·CVSS 6.8
CVE-2010-1814 [MEDIUM] CVE-2010-1814 webkit: memory corruption flaw when handling form menus
CVE-2010-1814 webkit: memory corruption flaw when handling form menus
A memory corruption issue exists in WebKit's handling of form menus. Visiting a
maliciously crafted website may lead to an unexpected application termination
or arbitrary code execution. This issue is fixed through improved handling of
form menus. Credit to Csaba Osztrogonac of University of Szeged for reporting
this issue.
References:
https://bugs.webkit.org/show_bug.cgi?id=40828
http://trac.webkit.org/changeset/61709
http://support.apple.com/kb/HT4334
Discussion:
This issue has been corrected in WebKitGTK 1.2.5.
---
Created webkitgtk tracking bugs for this issue
Affects: fedora-all [bug 640382]
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2011:0177 https://rhn
Bugzilla
CVE-2010-1815 webkit: use-after-free flaw when handling scrollbars
bugzilla·2010-09-08·CVSS 6.8
CVE-2010-1815 [MEDIUM] CVE-2010-1815 webkit: use-after-free flaw when handling scrollbars
CVE-2010-1815 webkit: use-after-free flaw when handling scrollbars
A use after free issue exists in WebKit's handling of scrollbars. Visiting
a maliciously crafted website may lead to an unexpected application
termination or arbitrary code execution. This issue is addressed through
improved memory management. Credit to Tony Chang of Google, Inc for
reporting this issue.
References:
https://bugs.webkit.org/show_bug.cgi?id=41196
http://trac.webkit.org/changeset/63138
http://support.apple.com/kb/HT4334
Discussion:
This issue has been corrected in WebKitGTK 1.2.5.
---
Created webkitgtk tracking bugs for this issue
Affects: fedora-all [bug 640382]
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2011:0177 https://rhn.redhat.com/errata/RHSA
Bugzilla
CVE-2010-1812 webkit: use-after-free flaw in handling of selections
bugzilla·2010-09-08·CVSS 6.8
CVE-2010-1812 [MEDIUM] CVE-2010-1812 webkit: use-after-free flaw in handling of selections
CVE-2010-1812 webkit: use-after-free flaw in handling of selections
A use after free issue exists in WebKit's handling of selections. Visiting
a maliciously crafted website may lead to an unexpected application
termination or arbitrary code execution. This issue is addressed through
improved handling of selections. Credit to Ojan Vafai of Google, Inc. for
reporting this issue.
References:
https://bugs.webkit.org/show_bug.cgi?id=41523
http://trac.webkit.org/changeset/62873
Discussion:
Public via http://support.apple.com/kb/HT4334
---
This issue has been corrected in WebKitGTK 1.2.5.
---
Created webkitgtk tracking bugs for this issue
Affects: fedora-all [bug 640382]
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2011:0177 https://rh
2011-03-23
Published