WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3 and Google Chrome before 6.0.472.62, does not properly perform a cast of an unspecified variable, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an SVG element in a non-SVG document.
References
Information
Published : 2010-10-04 14:00
Updated : 2020-08-03 11:32
NVD link : CVE-2010-1822
Mitre link : CVE-2010-1822
JSON object : View
CWE
CWE-704
Incorrect Type Conversion or Cast
Products Affected
apple
- safari
- chrome
opensuse
- opensuse