CVE-2009-0744
Apple Safari 4 Beta build 528.16 - Denial of Service via Malformed feeds: URI
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-0744. PoCs published by Trancer.
AI-analyzed exploit summary This exploit demonstrates a denial-of-service vulnerability in Apple Safari 4 Beta due to a NULL-pointer dereference. The provided URIs trigger the crash when processed by the browser.
Description
Apple Safari 4 Beta build 528.16 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a feeds: URI beginning with a (1) % (percent), (2) { (open curly bracket), (3) } (close curly bracket), (4) ^ (caret), (5) ` (backquote), or (6) | (pipe) character, followed by an & (ampersand) character.
Exploits (1)
This exploit demonstrates a denial-of-service vulnerability in Apple Safari 4 Beta due to a NULL-pointer dereference. The provided URIs trigger the crash when processed by the browser.