CVE-2010-0924

Apple Safari 4.0.3-4.0.4 - Denial of Service via BACKGROUND Attribute

Title source: llm
STIX 2.1

Description

cfnetwork.dll 1.450.5.0 in CFNetwork, as used by safari.exe 531.21.10 in Apple Safari 4.0.3 and 4.0.4 on Windows, allows remote attackers to cause a denial of service (application crash) via a long string in the BACKGROUND attribute of a BODY element.

References (2)

Core 2
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/38447

Scores

EPSS 0.0115
EPSS Percentile 63.8%

Details

Status published
Products (2)
apple/safari 4.0.3
apple/safari 4.0.4
Published Mar 03, 2010
Tracked Since Feb 18, 2026