9.3

CVE-2009-1709

Use-after-free vulnerability in the garbage-collection implementation in WebCore in WebKit in Apple Safari before 4.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption and application crash) via an SVG animation element, related to SVG set objects, SVG marker elements, the targetElement attribute, and unspecified "caches."

Data is provided by the National Vulnerability Database (NVD)
AppleSafari Update- Editionmac Version <= 4.0_beta
AppleSafari Version0.8 Update- Editionmac
AppleSafari Version0.9 Update- Editionmac
AppleSafari Version1.0 Update- Editionmac
AppleSafari Version1.0.3 Update- Editionmac
AppleSafari Version1.1 Update- Editionmac
AppleSafari Version1.2 Update- Editionmac
AppleSafari Version1.3 Update- Editionmac
AppleSafari Version1.3.1 Update- Editionmac
AppleSafari Version1.3.2 Update- Editionmac
AppleSafari Version2.0 Update- Editionmac
AppleSafari Version2.0.2 Update- Editionmac
AppleSafari Version2.0.4 Update- Editionmac
AppleSafari Version3.0 Update- Editionmac
AppleSafari Version3.0.2 Update- Editionmac
AppleSafari Version3.0.3 Update- Editionmac
AppleSafari Version3.0.4 Update- Editionmac
AppleSafari Version3.1 Update- Editionmac
AppleSafari Version3.1.1 Update- Editionmac
AppleSafari Version3.1.2 Update- Editionmac
AppleSafari Version3.2.1 Update- Editionmac
AppleSafari Version3.2.3 Update- Editionmac
AppleSafari Update- Editionwindows Version <= 3.2.3
AppleSafari Version3.0 Update- Editionwindows
AppleSafari Version3.0.1 Update- Editionwindows
AppleSafari Version3.0.2 Update- Editionwindows
AppleSafari Version3.0.3 Update- Editionwindows
AppleSafari Version3.0.4 Update- Editionwindows
AppleSafari Version3.1 Update- Editionwindows
AppleSafari Version3.1.1 Update- Editionwindows
AppleSafari Version3.1.2 Update- Editionwindows
AppleSafari Version3.2 Update- Editionwindows
AppleSafari Version3.2.1 Update- Editionwindows
AppleSafari Version3.2.2 Update- Editionwindows
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 8.09% 0.918
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C