back to your roots
Showing 1 - 1 of 1 RSS Feed

Files

Zero Day Initiative Advisory 08-045
Posted Jul 26, 2008
Authored by Tipping Point | Site zerodayinitiative.com

A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Apple Safari. User interaction is required to exploit this vulnerability in that the target must visit a malicious page. The specific flaw exists in the garbage collection of JavaScript document elements in WebCore. When a CSSStyleSheet object of a style element is copied, and the style element is deallocated, a reference to the ownerNode property of the copied CSSStyleSheet object will result in a heap corruption allowing for the execution of arbitrary code.

tags | advisory, remote, arbitrary, javascript
systems | apple
advisories | CVE-2008-2317
MD5 | fd7eab9f0357ba1ffd8f1eb1b36d1baa
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

packet storm

© 2012 Packet Storm. All rights reserved.

close