CVE-2010-1759
Apple Safari < 5.0 - Remote Code Execution via Node.normalize Use-After-Free
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-1759.
AI-analyzed exploit summary This exploit leverages a WebKit normalize bug (CVE-2010-1759) to achieve remote code execution via heap spraying and memory corruption. It targets Android devices (2.1-2.3) by manipulating DOM attributes and triggering a use-after-free vulnerability.
Description
Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to the Node.normalize method.
Exploits (1)
This exploit leverages a WebKit normalize bug (CVE-2010-1759) to achieve remote code execution via heap spraying and memory corruption. It targets Android devices (2.1-2.3) by manipulating DOM attributes and triggering a use-after-free vulnerability.