CVE-2010-0050
HIGHApple Safari < 4.0.5 - Use-After-Free via Improperly Nested HTML Tags
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-0050. PoCs published by Dr_IDE.
AI-analyzed exploit summary This exploit triggers a stack exhaustion denial-of-service (DoS) in WebKit-based browsers (e.g., Safari) by recursively calling functions via setInterval, causing infinite recursion and crashing the browser.
Description
Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an HTML document with improperly nested tags.
Exploits (1)
This exploit triggers a stack exhaustion denial-of-service (DoS) in WebKit-based browsers (e.g., Safari) by recursively calling functions via setInterval, causing infinite recursion and crashing the browser.
References (19)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H