HIGH
kdelibs: Integer overflow in KJS JavaScript garbage collector
Published Jun 10, 2009
9.3
HIGHCVSS 2.0
EPSS 8.11%
Description
The JavaScript garbage collector in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle allocation failures, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document that triggers write access to an "offset of a NULL pointer."
Affected products
No data.
Configuration 1
OR
- ≤ 4.0_beta
- 0.8
- 0.9
- 1.0
- 1.0.3
- 1.1
- 1.2
- 1.3
- 1.3.1
- 1.3.2
- 2.0
- 2.0.2
- 2.0.4
- 3.0
- 3.0.2
- 3.0.3
- 3.0.4
- 3.1
- 3.1.1
- 3.1.2
- 3.2.1
- 3.2.3
Configuration 2
OR
- ≤ 3.2.3
- 3.0
- 3.0.1
- 3.0.2
- 3.0.3
- 3.0.4
- 3.1
- 3.1.1
- 3.1.2
- 3.2
- 3.2.1
- 3.2.2
No data.
Red Hat Enterprise Linux 4
kdelibs-6:3.3.1-14.el4
Fixed · RHSA-2009:1127
Red Hat Enterprise Linux 5
kdelibs-6:3.5.4-22.el5_3
Fixed · RHSA-2009:1127
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 4 | kdelibs-6:3.3.1-14.el4 | Fixed | RHSA-2009:1127 |
| Red Hat Enterprise Linux 5 | kdelibs-6:3.5.4-22.el5_3 | Fixed | RHSA-2009:1127 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (2)
References (32)
- http://lists.apple.com/archives/security-announce/2009/Jun/msg00005.html vendor-advisoryx_refsource_APPLE
- http://lists.apple.com/archives/security-announce/2009/jun/msg00002.html vendor-advisoryx_refsource_APPLEVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html vendor-advisoryx_refsource_SUSE
- http://osvdb.org/54985 vdb-entryx_refsource_OSVDB
- http://secunia.com/advisories/35379 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/36057 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/36062 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/36790 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/37746 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/43068 third-party-advisoryx_refsource_SECUNIA
- http://securitytracker.com/id?1022345 vdb-entryx_refsource_SECTRACKPatch
- http://support.apple.com/kb/HT3613 x_refsource_CONFIRMVendor Advisory
- http://support.apple.com/kb/HT3639 x_refsource_CONFIRM
- http://www.debian.org/security/2009/dsa-1950 vendor-advisoryx_refsource_DEBIAN
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:330 vendor-advisoryx_refsource_MANDRIVA
- http://www.securityfocus.com/bid/35260 vdb-entryx_refsource_BIDExploit
- http://www.securityfocus.com/bid/35309 vdb-entryx_refsource_BID
- http://www.ubuntu.com/usn/USN-822-1 vendor-advisoryx_refsource_UBUNTU
- http://www.ubuntu.com/usn/USN-836-1 vendor-advisoryx_refsource_UBUNTU
- http://www.ubuntu.com/usn/USN-857-1 vendor-advisoryx_refsource_UBUNTU
- http://www.vupen.com/english/advisories/2009/1522 vdb-entryx_refsource_VUPENPatchVendor Advisory
- http://www.vupen.com/english/advisories/2009/1621 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2011/0212 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2009-1687 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=506453 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2009-1687
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10260 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2009-1687
- https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01177.html vendor-advisoryx_refsource_FEDORA
- https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01196.html vendor-advisoryx_refsource_FEDORA
- https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01199.html vendor-advisoryx_refsource_FEDORA
- https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01200.html vendor-advisoryx_refsource_FEDORA
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jun 10, 2009
Updated Aug 7, 2024
Reserved May 20, 2009
Link CVE-2009-1687
CISA Vulnrichment
Updated n/a