38884vdb entry
http://www.securityfocus.com/bid/38884 CVE-2010-1131
Apple Safari 4.0.5 - Object Tag 'JavaScriptCore.dll' Crash (Denial of Service)
Record summary
CVE-2010-1131 has a selected CVSS score of 4.3; EIP currently links 2 catalogued exploits.
Description
JavaScriptCore.dll, as used in Apple Safari 4.0.5 on Windows XP SP3, allows remote attackers to cause a denial of service (application crash) via an HTML document composed of many successive occurrences of the <object> substring.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBApple Safari 4.0.5 - Object Tag 'JavaScriptCore.dll' Crash (Denial of Service)ExploitDB exploitby 3lkt3F0k4Not analyzed1 file
ExploitDBApple Safari 4.0.5 - 'JavaScriptCore.dll' Stack ExhaustionExploitDB exploitby Mathias KarlssonNot analyzed1 file
References
3securityfocus.com
http://www.securityfocus.com/data/vulnerabilities/exploits/38884.php nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2010-1131