Back

MEDIUM

qt: Stack consumption via specially-crafted CSS STYLE element

Published Mar 19, 2010

Description

Stack consumption vulnerability in the WebCore::CSSSelector function in WebKit, as used in Apple Safari 4.0.4, Apple Safari on iPhone OS and iPhone OS for iPod touch, and Google Chrome 4.0.249, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a STYLE element composed of a large number of *> sequences.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (13)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 19, 2010
Updated Aug 7, 2024
Reserved Mar 19, 2010
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Feb 24, 2010