HIGH
WebKit: multiple vulnerabilities in WebKitGTK
Published Jul 30, 2010
9.3
HIGHCVSS 2.0
EPSS 5.96%
Description
WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and webkitgtk before 1.2.6; allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a use element in an SVG document.
Affected products
No data.
Configuration 1
AND
Running on/with
OR
- 10.5
- 10.5.0
- 10.5.1
- 10.5.2
- 10.5.3
- 10.5.4
- 10.5.5
- 10.5.6
- 10.5.7
- 10.5.8
- 10.6.0
- 10.6.1
- 10.6.2
- 10.6.3
- 10.6.4
- 10.5
- 10.5.0
- 10.5.1
- 10.5.2
- 10.5.3
- 10.5.4
- 10.5.5
- 10.5.6
- 10.5.7
- 10.5.8
- 10.6.0
- 10.6.1
- 10.6.2
- 10.6.3
- 10.6.4
- n/a
- n/a
- n/a
- n/a
Configuration 2
AND
Running on/with
OR
- 10.4
- 10.4.0
- 10.4.1
- 10.4.2
- 10.4.3
- 10.4.4
- 10.4.5
- 10.4.6
- 10.4.7
- 10.4.8
- 10.4.9
- 10.4.10
- 10.4.11
- 10.4
- 10.4.0
- 10.4.1
- 10.4.2
- 10.4.3
- 10.4.4
- 10.4.5
- 10.4.6
- 10.4.7
- 10.4.8
- 10.4.9
- 10.4.10
- 10.4.11
No data.
Red Hat Enterprise Linux 6
webkitgtk-0:1.2.6-2.el6_0
Fixed · RHSA-2011:0177
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | webkitgtk-0:1.2.6-2.el6_0 | Fixed | RHSA-2011:0177 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (25)
- http://lists.apple.com/archives/security-announce/2010//Jul/msg00001.html vendor-advisoryx_refsource_APPLEPatchVendor Advisory
- http://lists.apple.com/archives/security-announce/2010//Nov/msg00003.html vendor-advisoryx_refsource_APPLE
- http://lists.apple.com/archives/security-announce/2010//Sep/msg00002.html vendor-advisoryx_refsource_APPLE
- http://lists.opensuse.org/opensuse-security-announce/2010-10/msg00000.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html vendor-advisoryx_refsource_SUSE
- http://secunia.com/advisories/41856 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/42314 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/43068 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/43086 third-party-advisoryx_refsource_SECUNIA
- http://support.apple.com/kb/HT4276 x_refsource_CONFIRMVendor Advisory
- http://support.apple.com/kb/HT4334 x_refsource_CONFIRM
- http://support.apple.com/kb/HT4456 x_refsource_CONFIRM
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:039 vendor-advisoryx_refsource_MANDRIVA
- http://www.redhat.com/support/errata/RHSA-2011-0177.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/42020 vdb-entryx_refsource_BIDPatch
- http://www.ubuntu.com/usn/USN-1006-1 vendor-advisoryx_refsource_UBUNTU
- http://www.vupen.com/english/advisories/2010/2722 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2011/0212 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2011/0216 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2011/0552 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2010-1788 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=627366 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2010-1788
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11962 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2010-1788
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner apple
Published Jul 30, 2010
Updated Aug 7, 2024
Reserved May 6, 2010
Link CVE-2010-1788
CISA Vulnrichment
Updated n/a