Use-after-free vulnerability in WebKit, as used in Apple iTunes before 10.2 on Windows, Apple Safari, and Google Chrome before 6.0.472.59, allows remote attackers to execute arbitrary code or cause a denial of service via vectors related to SVG styles, the DOM tree, and error messages.
References
Link | Resource |
---|---|
http://googlechromereleases.blogspot.com/2010/09/stable-beta-channel-updates_14.html | Vendor Advisory |
https://bugs.webkit.org/show_bug.cgi?id=43260 | Permissions Required |
http://code.google.com/p/chromium/issues/detail?id=50712 | Exploit Vendor Advisory |
http://www.vupen.com/english/advisories/2011/0212 | Third Party Advisory |
http://secunia.com/advisories/43068 | Third Party Advisory |
http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html | Mailing List Third Party Advisory |
http://www.zerodayinitiative.com/advisories/ZDI-11-095 | Third Party Advisory VDB Entry |
http://support.apple.com/kb/HT4554 | Third Party Advisory |
http://lists.apple.com/archives/security-announce/2011/Mar/msg00000.html | Mailing List Third Party Advisory |
http://support.apple.com/kb/HT4566 | Broken Link |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7151 | Third Party Advisory |
Information
Published : 2010-09-24 12:00
Updated : 2020-07-31 12:21
NVD link : CVE-2010-1824
Mitre link : CVE-2010-1824
JSON object : View
CWE
CWE-416
Use After Free
Products Affected
apple
- itunes
- chrome