|
|
|
![]() |
Vulnerability Note VU#351217Apple Safari WebKit component vulnerable to buffer overflowOverviewApple Safari WebKit component is vulnerable to buffer overflow. This may allow a remote attacker to execute arbitrary code or cause a denial-of-service condition.I. DescriptionSafariApple Safari is a web browser that comes with the Mac OS X operating system.
The Problem The Apple Safari WebKit component contains a heap-based buffer overflow. This vulnerability can be triggered by persuading a user to access a specially crafted web page with Safari. Considerations WebKit may be used in other Apple software including, but not limited to Dashboard and Mail. II. ImpactA remote attacker may be able to execute arbitrary code or crash any application using WebKitIII. SolutionInstall an updateThis issue is correced in Apple Security Update 2006-001.
References
This issue was reported in Apple Security Update 2006-001. Apple credits Suresec LTD with reporting this issue. This document was written by Jeff Gennari
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
||||||||||||||||||||||||||||||||||||||||
|
||||||||||||||||||||||||||||||||||||||||||