Apple Security Advisories · June 2009 — Apple Security Advisories
57 advisories 57 CVEs 1 EXPLOITED

Apple-vendor CVEs for 2009-06. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

CVE-2009-0949

OtherExploitedCISA KEV listedHIGH2009-06-02

The ippReadIO function in cups/ipp.c in cupsd in CUPS before 1.3.10 does not properly initialize memory for IPP request packets, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a scheduler requ...

CVEs:CVE-2009-0949

Affected products

ProductStatusVendorPackageEcosystem
cups affected apple
mac_os_x affected apple
mac_os_x_server affected apple
Upstream advisory

CVE-2009-1955

OtherWeaponized exploitHIGH2009-06-06

The expat XML parser in the apr_xml_* interface in xml/apr_xml.c in Apache APR-util before 1.3.7, as used in the mod_dav and mod_dav_svn modules in the Apache HTTP Server, allows remote attackers to cause a denial of service (memory consumption) via a ...

CVEs:CVE-2009-1955

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

CVE-2009-0950

OtherWeaponized exploitHIGH2009-06-02

Stack-based buffer overflow in Apple iTunes before 8.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an itms: URL with a long URL component after a colon.

CVEs:CVE-2009-0950

Affected products

ProductStatusVendorPackageEcosystem
itunes affected apple
Upstream advisory

CVE-2009-1692

iOSWeaponized exploitHIGH2009-06-19

WebKit before r41741, as used in Apple iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Safari, and other software, allows remote attackers to cause a denial of service (memory consumption or device reset) via a web page contain...

CVEs:CVE-2009-1692

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
ipod_touch affected apple
safari affected apple
Upstream advisory

CVE-2009-1699

iOSActive exploitation (sightings)HIGH2009-06-10

The XSL stylesheet implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle XML external entities, which allows remote attackers to read arbitrary files vi...

CVEs:CVE-2009-1699

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
safari affected apple
Upstream advisory

CVE-2009-0955

OtherActive exploitation (sightings)HIGH2009-06-02

Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted image description atoms in an Apple video file, related to a "sign extension issue."

CVEs:CVE-2009-0955

Affected products

ProductStatusVendorPackageEcosystem
quicktime affected apple
Upstream advisory

CVE-2009-1684

iOSActive exploitation (sightings)CRITICAL2009-06-10

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via an event handler that triggers...

CVEs:CVE-2009-1684

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-0961

iOSActive exploitation (sightings)CRITICAL2009-06-19

The Mail component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 dismisses the call approval dialog when another alert appears, which might allow remote attackers to force the iPhone to place a call without user ap...

CVEs:CVE-2009-0961

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
ipod_touch affected apple
Upstream advisory

CVE-2009-1701

iOSEPSS <= 49%HIGH2009-06-10

Use-after-free vulnerability in the JavaScript DOM implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to execute arbitrary code or cause a denial of s...

CVEs:CVE-2009-1701

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
ipod_touch affected apple
safari affected apple
Upstream advisory

CVE-2009-1686

iOSEPSS <= 49%HIGH2009-06-10

WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle constant (aka const) declarations in a type-conversion operation during JavaScript exception handling, which allows ...

CVEs:CVE-2009-1686

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-0951

OtherEPSS <= 49%HIGH2009-06-02

Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FLC compression file.

CVEs:CVE-2009-0951

Affected products

ProductStatusVendorPackageEcosystem
quicktime affected apple
Upstream advisory

CVE-2009-0185

OtherEPSS <= 49%HIGH2009-06-02

Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted MS ADPCM encoded audio data in an AVI movie file.

CVEs:CVE-2009-0185

Affected products

ProductStatusVendorPackageEcosystem
quicktime affected apple
Upstream advisory

CVE-2009-0954

OtherEPSS <= 49%HIGH2009-06-02

Heap-based buffer overflow in Apple QuickTime before 7.6.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a movie file containing crafted Clipping Region (CRGN) atom types.

CVEs:CVE-2009-0954

Affected products

ProductStatusVendorPackageEcosystem
quicktime affected apple
Upstream advisory

CVE-2009-0957

OtherEPSS <= 49%HIGH2009-06-02

Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JP2 image.

CVEs:CVE-2009-0957

Affected products

ProductStatusVendorPackageEcosystem
quicktime affected apple
Upstream advisory

CVE-2009-0791

OtherEPSS <= 49%CRITICAL2009-06-03

Multiple integer overflows in Xpdf 2.x and 3.x and Poppler 0.x, as used in the pdftops filter in CUPS 1.1.17, 1.1.22, and 1.3.7, GPdf, and kdegraphics KPDF, allow remote attackers to cause a denial of service (application crash) or possibly execute arb...

CVEs:CVE-2009-0791

Affected products

ProductStatusVendorPackageEcosystem
cups affected apple
Upstream advisory

CVE-2009-1708

SafariEPSS <= 49%HIGH2009-06-10

Apple Safari before 4.0 does not prevent calls to the open-help-anchor URL handler by web sites, which allows remote attackers to open arbitrary local help files, and execute arbitrary code or obtain sensitive information, via a crafted call.

CVEs:CVE-2009-1708

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-0953

OtherEPSS <= 49%HIGH2009-06-02

Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image.

CVEs:CVE-2009-0953

Affected products

ProductStatusVendorPackageEcosystem
quicktime affected apple
Upstream advisory

CVE-2009-1705

SafariEPSS <= 49%HIGH2009-06-10

CoreGraphics in Apple Safari before 4.0 on Windows does not properly use arithmetic during automatic hinting of TrueType fonts, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application cras...

CVEs:CVE-2009-1705

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-0956

OtherEPSS <= 49%HIGH2009-06-02

Apple QuickTime before 7.6.2 does not properly initialize memory before use in handling movie files, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a movie containing a user data atom of siz...

CVEs:CVE-2009-0956

Affected products

ProductStatusVendorPackageEcosystem
quicktime affected apple
Upstream advisory

CVE-2009-0188

OtherEPSS <= 49%HIGH2009-06-02

Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie composed of a Sorenson 3 video file.

CVEs:CVE-2009-0188

Affected products

ProductStatusVendorPackageEcosystem
quicktime affected apple
Upstream advisory

CVE-2009-0952

OtherEPSS <= 49%HIGH2009-06-02

Buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted compressed PSD image.

CVEs:CVE-2009-0952

Affected products

ProductStatusVendorPackageEcosystem
quicktime affected apple
Upstream advisory

CVE-2009-1715

SafariEPSS <= 49%CRITICAL2009-06-10

Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via vectors related to script execution with incorrect pr...

CVEs:CVE-2009-1715

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1717

macOSEPSS <= 49%CRITICAL2009-06-05

Integer overflow in Terminal in Apple Mac OS X 10.5 before 10.5.7 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted size value in a CSI[4 xterm resize escape sequence ...

CVEs:CVE-2009-1717

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
mac_os_x_server affected apple
Upstream advisory

CVE-2009-1681

iOSEPSS <= 49%HIGH2009-06-10

WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not prevent web sites from loading third-party content into a subframe, which allows remote attackers to bypass the Same Origin Policy a...

CVEs:CVE-2009-1681

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1703

SafariEPSS <= 49%HIGH2009-06-10

WebKit in Apple Safari before 4.0 does not prevent references to file: URLs within (1) audio and (2) video elements, which allows remote attackers to determine the existence of arbitrary files via a crafted HTML document.

CVEs:CVE-2009-1703

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1697

iOSEPSS <= 49%CRITICAL2009-06-10

CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject HTTP headers and bypass the Same Origin Policy via a crafted HTML document,...

CVEs:CVE-2009-1697

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1710

SafariEPSS <= 49%LOW2009-06-10

WebKit in Apple Safari before 4.0 allows remote attackers to spoof the browser's display of (1) the host name, (2) security indicators, and unspecified other UI elements via a custom cursor in conjunction with a modified CSS3 hotspot property.

CVEs:CVE-2009-1710

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1693

iOSEPSS <= 49%MEDIUM2009-06-10

WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to read images from arbitrary web sites via a CANVAS element with an SVG image, related to a "cross-site image captur...

CVEs:CVE-2009-1693

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1683

iOSEPSS <= 49%HIGH2009-06-19

The Telephony component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to cause a denial of service (device reset) via a crafted ICMP echo request, which triggers an assertion error related t...

CVEs:CVE-2009-1683

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
ipod_touch affected apple
Upstream advisory

CVE-2009-1702

iOSEPSS <= 49%CRITICAL2009-06-10

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to improper ha...

CVEs:CVE-2009-1702

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
ipod_touch affected apple
safari affected apple
Upstream advisory

CVE-2009-1685

iOSEPSS <= 49%CRITICAL2009-06-10

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML by overwriting the document.implem...

CVEs:CVE-2009-1685

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1688

iOSEPSS <= 49%CRITICAL2009-06-10

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to determining...

CVEs:CVE-2009-1688

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1689

iOSEPSS <= 49%CRITICAL2009-06-10

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors involving submission o...

CVEs:CVE-2009-1689

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1691

iOSEPSS <= 49%CRITICAL2009-06-10

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to insufficien...

CVEs:CVE-2009-1691

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1695

iOSEPSS <= 49%CRITICAL2009-06-10

Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors involving access to fr...

CVEs:CVE-2009-1695

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1714

SafariEPSS <= 49%CRITICAL2009-06-10

Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via vectors related to the improper escaping of HTML attr...

CVEs:CVE-2009-1714

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1700

iOSEPSS <= 49%MEDIUM2009-06-10

The XSLT implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle redirects, which allows remote attackers to read XML content from arbitrary web pages via...

CVEs:CVE-2009-1700

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
ipod_touch affected apple
safari affected apple
Upstream advisory

CVE-2009-1196

OtherEPSS <= 49%HIGH2009-06-09

The directory-services functionality in the scheduler in CUPS 1.1.17 and 1.1.22 allows remote attackers to cause a denial of service (cupsd daemon outage or crash) via manipulations of the timing of CUPS browse packets, related to a "pointer use-after-...

CVEs:CVE-2009-1196

Affected products

ProductStatusVendorPackageEcosystem
cups affected apple
Upstream advisory

CVE-2009-1694

iOSEPSS <= 49%MEDIUM2009-06-10

WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle redirects, which allows remote attackers to read images from arbitrary web sites via vectors involving a CANVAS elem...

CVEs:CVE-2009-1694

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1704

SafariEPSS <= 49%HIGH2009-06-10

CFNetwork in Apple Safari before 4.0 misinterprets downloaded image files as local HTML documents in unspecified circumstances, which allows remote attackers to execute arbitrary JavaScript code by placing it in an image file.

CVEs:CVE-2009-1704

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-0959

iOSEPSS <= 49%HIGH2009-06-19

The MPEG-4 video codec in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to cause a denial of service (device reset) via a crafted MPEG-4 video file that triggers an "input validation issue."

CVEs:CVE-2009-0959

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
ipod_touch affected apple
Upstream advisory

CVE-2009-1696

iOSEPSS <= 49%MEDIUM2009-06-10

WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 uses predictable random numbers in JavaScript applications, which makes it easier for remote web servers to track the behavior of a Safari us...

CVEs:CVE-2009-1696

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1718

SafariEPSS <= 49%HIGH2009-06-10

WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to obtain sensitive information via vectors involving drag events and the dragging of content over a crafted web page.

CVEs:CVE-2009-1718

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1713

SafariEPSS <= 49%HIGH2009-06-10

The XSLT functionality in WebKit in Apple Safari before 4.0 does not properly implement the document function, which allows remote attackers to read (1) arbitrary local files and (2) files from different security zones via unspecified vectors.

CVEs:CVE-2009-1713

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-0960

iOSEPSS <= 49%MEDIUM2009-06-19

The Mail component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 does not provide an option to disable remote image loading in HTML email, which allows remote attackers to determine the device address and when an e...

CVEs:CVE-2009-0960

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
ipod_touch affected apple
Upstream advisory

CVE-2009-1706

SafariEPSS <= 49%MEDIUM2009-06-10

The Private Browsing feature in Apple Safari before 4.0 on Windows does not remove cookies from the alternate cookie store in unspecified circumstances upon (1) disabling of the feature or (2) exit of the application, which makes it easier for remote w...

CVEs:CVE-2009-1706

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1682

SafariEPSS <= 49%MEDIUM2009-06-10

Apple Safari before 4.0 does not properly check for revoked Extended Validation (EV) certificates, which makes it easier for remote attackers to trick a user into accepting an invalid certificate.

CVEs:CVE-2009-1682

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-2062

SafariEPSS <= 49%CRITICAL2009-06-15

Apple Safari before 3.2.2 processes a 3xx HTTP CONNECT response before a successful SSL handshake, which allows man-in-the-middle attackers to execute arbitrary web script, in an https site's context, by modifying this CONNECT response to specify a 302...

CVEs:CVE-2009-2062

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-2066

SafariEPSS <= 49%CRITICAL2009-06-15

Apple Safari detects http content in https web pages only when the top-level frame uses https, which allows man-in-the-middle attackers to execute arbitrary web script, in an https site's context, by modifying an http page to include an https iframe th...

CVEs:CVE-2009-2066

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-2058

SafariEPSS <= 49%CRITICAL2009-06-15

Apple Safari before 3.2.2 uses the HTTP Host header to determine the context of a document provided in a (1) 4xx or (2) 5xx CONNECT response from a proxy server, which allows man-in-the-middle attackers to execute arbitrary web script by modifying this...

CVEs:CVE-2009-2058

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-0958

iOSEPSS <= 49%HIGH2009-06-19

Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 stores an exception for a hostname when the user accepts an untrusted Exchange server certificate, which causes it to be accepted without prompting in future usage and all...

CVEs:CVE-2009-0958

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
ipod_touch affected apple
Upstream advisory

CVE-2009-1716

SafariEPSS <= 49%MEDIUM2009-06-10

CFNetwork in Apple Safari before 4.0 on Windows does not properly protect the temporary files created for downloads, which allows local users to obtain sensitive information by reading these files.

CVEs:CVE-2009-1716

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-1680

iOSEPSS <= 49%LOW2009-06-19

Safari in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly clear the search history when it is cleared from the Settings application, which allows physically proximate attackers to obtain the search his...

CVEs:CVE-2009-1680

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
ipod_touch affected apple
Upstream advisory

CVE-2009-1679

iOSEPSS <= 49%HIGH2009-06-19

The Profiles component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1, when installing a configuration profile, can replace the password policy from Exchange ActiveSync with a weaker password policy, which allows ph...

CVEs:CVE-2009-1679

Affected products

ProductStatusVendorPackageEcosystem
iphone_os affected apple
ipod_touch affected apple
Upstream advisory

CVE-2009-1707

SafariEPSS <= 49%LOW2009-06-10

Race condition in the Reset Safari implementation in Apple Safari before 4.0 on Windows might allow local users to read stored web-site passwords via unspecified vectors.

CVEs:CVE-2009-1707

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-2027

SafariEPSS <= 49%HIGH2009-06-10

The Installer in Apple Safari before 4.0 on Windows allows local users to gain privileges by checking a box that specifies an immediate launch of the application after installation, related to an unspecified compression method.

CVEs:CVE-2009-2027

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2009-2072

SafariEPSS <= 49%MEDIUM2009-06-15

Apple Safari does not require a cached certificate before displaying a lock icon for an https web site, which allows man-in-the-middle attackers to spoof an arbitrary https site by sending the browser a crafted (1) 4xx or (2) 5xx CONNECT response page ...

CVEs:CVE-2009-2072

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.