20060424 Apple Mac OS X Safari 2.0.3 Vulnerabilitymailing list
http://lists.grok.org.uk/pipermail/full-disclosure/2006-April/045472.html CVE-2006-2019
Apple Mac OSX Safari 2.0.3 (417.9.2) - 'ROWSPAN' Denial of Service (PoC)
Record summary
CVE-2006-2019 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
Apple Mac OS X Safari 2.0.3, 1.3.1, and possibly other versions allows remote attackers to cause a denial of service (CPU consumption and crash) via a TD element with a large number in the rowspan attribute.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBApple Mac OSX Safari 2.0.3 (417.9.2) - 'ROWSPAN' Denial of Service (PoC)ExploitDB exploitby Yannick von ArxNot analyzed1 file
References
1019763Third-party advisory
http://secunia.com/advisories/19763 1015982vdb entry
http://securitytracker.com/id?1015982 20060424 Apple Mac OS X Safari 2.0.3 Vulnerabilitymailing list
http://www.securityfocus.com/archive/1/431874/100/0/threaded 20060424 Re: Apple Mac OS X Safari 2.0.3 Vulnerabilitymailing list
http://www.securityfocus.com/archive/1/431944/100/0/threaded 17674vdb entry
http://www.securityfocus.com/bid/17674 ADV-2006-1508vdb entry
http://www.vupen.com/english/advisories/2006/1508 macosx-safari-table-dos(25998)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/25998 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2006-2019 1715exploit
https://www.exploit-db.com/exploits/1715