20061114 Apple Safari "match" Buffer Overflow Vulnerabilitymailing list
http://www.securityfocus.com/archive/1/451542/100/0/threaded CVE-2006-6015
Apple Safari 2.0.4 - JavaScript Regular Expression Match Remote Denial of Service
Record summary
CVE-2006-6015 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in the JavaScript implementation in Safari on Apple Mac OS X 10.4 allows remote attackers to cause a denial of service (application crash) via a long argument to the exec method of a regular expression.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBApple Safari 2.0.4 - JavaScript Regular Expression Match Remote Denial of ServiceExploitDB exploitby jbh_cgNot analyzed1 file
References
420061114 Re: Apple Safari "match" Buffer Overflow Vulnerabilitymailing list
http://www.securityfocus.com/archive/1/451823/100/0/threaded 21053vdb entry
http://www.securityfocus.com/bid/21053 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2006-6015