Advisories
SafariEPSS <= 49%HIGH2010-02-11
WebKit before r53525, as used in Google Chrome before 4.0.249.89, allows remote attackers to execute arbitrary code in the Chrome sandbox via a malformed RUBY element, as demonstrated by a <ruby>><table><rt> sequence.
CVEs:CVE-2010-0647
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| webkit |
affected |
apple |
— |
— |
SafariEPSS <= 49%HIGH2010-02-11
The image decoder in WebKit before r52833, as used in Google Chrome before 4.0.249.78, does not properly handle a failure of memory allocation, which allows remote attackers to execute arbitrary code in the Chrome sandbox via a malformed GIF file that ...
CVEs:CVE-2010-0659
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| webkit |
affected |
apple |
— |
— |
SafariEPSS <= 49%LOW2010-02-11
WebKit, as used in Google Chrome before 4.0.249.78 and Apple Safari, allows remote attackers to bypass intended restrictions on popup windows via crafted use of a mouse click event.
CVEs:CVE-2010-0650
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| safari |
affected |
apple |
— |
— |
SafariEPSS <= 49%HIGH2010-02-11
WebKit before r52784, as used in Google Chrome before 4.0.249.78 and Apple Safari before 4.0.5, permits cross-origin loading of CSS stylesheets even when the stylesheet download has an incorrect MIME type and the stylesheet document is malformed, which...
CVEs:CVE-2010-0651
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| safari |
affected |
apple |
— |
— |
| webkit |
affected |
apple |
— |
— |
SafariEPSS <= 49%MEDIUM2010-02-11
WebCore/bindings/v8/custom/V8DOMWindowCustom.cpp in WebKit before r52401, as used in Google Chrome before 4.0.249.78, allows remote attackers to bypass the Same Origin Policy via vectors involving the window.open method.
CVEs:CVE-2010-0661
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| webkit |
affected |
apple |
— |
— |
SafariEPSS <= 49%HIGH2010-02-11
WebKit before r51295, as used in Google Chrome before 4.0.249.78, presents a directory-listing page in response to an XMLHttpRequest for a file:/// URL that corresponds to a directory, which allows attackers to obtain sensitive information or possibly ...
CVEs:CVE-2010-0656
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| webkit |
affected |
apple |
— |
— |
iOSEPSS <= 49%CRITICAL2010-02-03
Recovery Mode in Apple iPhone OS 1.0 through 3.1.2, and iPhone OS for iPod touch 1.1 through 3.1.2, allows physically proximate attackers to bypass device locking, and read or modify arbitrary data, via a USB control message that triggers memory corrup...
CVEs:CVE-2010-0038
Affected products
| Product | Status | Vendor | Package | Ecosystem |
| iphone_os |
affected |
apple |
— |
— |