Apple

Safari

1591 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 2.47%
  • Veröffentlicht 09.03.2012 00:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The extension subsystem in Google Chrome before 17.0.963.78 does not properly handle history navigation, which allows remote attackers to execute arbitrary code by leveraging a "Universal XSS (UXSS)" issue.

  • EPSS 0.97%
  • Veröffentlicht 08.03.2012 22:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability t...

  • EPSS 0.97%
  • Veröffentlicht 08.03.2012 22:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability t...

  • EPSS 0.35%
  • Veröffentlicht 08.03.2012 04:15:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Apple Safari 5.0.5 does not properly implement the setInterval function, which allows remote attackers to spoof the address bar via a crafted web page.

  • EPSS 1.85%
  • Veröffentlicht 08.03.2012 04:15:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Use-after-free vulnerability in Apple Safari 5.1.2, when a plug-in with a blocking function is installed, allows user-assisted remote attackers to execute arbitrary code via a crafted web page that is accessed during user interaction with the plug-in...

  • EPSS 1.57%
  • Veröffentlicht 05.03.2012 19:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of SVG values.

  • EPSS 2.36%
  • Veröffentlicht 05.03.2012 19:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving an SVG document.

  • EPSS 2.36%
  • Veröffentlicht 05.03.2012 19:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG use elements.

  • EPSS 2.76%
  • Veröffentlicht 05.03.2012 19:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Google Chrome before 17.0.963.65 does not properly perform a cast of an unspecified variable during handling of line boxes, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.

  • EPSS 2.76%
  • Veröffentlicht 05.03.2012 19:55:01
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Google Chrome before 17.0.963.65 does not properly perform casts of unspecified variables during the splitting of anonymous blocks, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted documen...