CVE-2010-0924
Apple Safari 4.0.3-4.0.4 - Denial of Service via BACKGROUND Attribute
Title source: llmDescription
cfnetwork.dll 1.450.5.0 in CFNetwork, as used by safari.exe 531.21.10 in Apple Safari 4.0.3 and 4.0.4 on Windows, allows remote attackers to cause a denial of service (application crash) via a long string in the BACKGROUND attribute of a BODY element.
References (2)
Core 2
Core References
Exploit vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/38447
Exploit x_refsource_misc
http://nobytes.com/exploits/Safari_4.0.4_background_DoS_pl.txt
Scores
EPSS
0.0115
EPSS Percentile
63.8%
Details
Status
published
Products (2)
apple/safari
4.0.3
apple/safari
4.0.4
Published
Mar 03, 2010
Tracked Since
Feb 18, 2026