Apple

Safari

1582 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 16.5%
  • Veröffentlicht 23.03.2009 14:19:12
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Unspecified vulnerability in Apple Safari on Mac OS X 10.5.6 allows remote attackers to execute arbitrary code via unknown vectors triggered by clicking on a link, as demonstrated by Nils during a PWN2OWN competition at CanSecWest 2009.

Exploit
  • EPSS 5.25%
  • Veröffentlicht 27.02.2009 17:30:09
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Apple Safari 4 Beta build 528.16 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a feeds: URI beginning with a (1) % (percent), (2) { (open curly bracket), (3) } (close curly bracket), (4) ^ (...

  • EPSS 0.51%
  • Veröffentlicht 13.02.2009 00:30:05
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Multiple unspecified vulnerabilities in Safari RSS in Apple Mac OS X 10.4.11 and 10.5.6, and Windows XP and Vista, allow remote attackers to execute arbitrary JavaScript in the local security zone via a crafted feed: URL, related to "input validation...

Exploit
  • EPSS 4.18%
  • Veröffentlicht 28.01.2009 18:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Apple Safari 3.2.1 (aka AppVer 3.525.27.1) on Windows allows remote attackers to cause a denial of service (infinite loop or access violation) via a link to an http URI in which the authority (aka hostname) portion is either a (1) . (dot) or (2) .. (...

  • EPSS 0.23%
  • Veröffentlicht 20.01.2009 16:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

An unspecified function in the JavaScript implementation in Apple Safari creates and exposes a "temporary footprint" when there is a current login to a web site, which makes it easier for remote attackers to trick a user into acting upon a spoofed po...

  • EPSS 0.62%
  • Veröffentlicht 15.01.2009 17:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Unspecified vulnerability in Apple Safari on Mac OS X 10.5 and Windows allows remote attackers to read arbitrary files on a client machine via vectors related to the association of Safari with the (1) feed, (2) feeds, and (3) feedsearch URL types for...

  • EPSS 5.9%
  • Veröffentlicht 08.01.2009 19:30:11
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer signedness error in Apple Safari allows remote attackers to read the contents of arbitrary memory locations, cause a denial of service (application crash), and probably have unspecified other impact via the array index of the arguments array ...

Exploit
  • EPSS 12.45%
  • Veröffentlicht 02.01.2009 19:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Memory leak in WebKit.dll in WebKit, as used by Apple Safari 3.2 on Windows Vista SP1, allows remote attackers to cause a denial of service (memory consumption and browser crash) via a long ALINK attribute in a BODY element in an HTML document.

  • EPSS 7.67%
  • Veröffentlicht 25.11.2008 23:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Safari in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 does not properly handle HTML TABLE elements, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and applicati...

  • EPSS 0.88%
  • Veröffentlicht 25.11.2008 23:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Safari in Apple iPhone OS 2.0 through 2.1 and iPhone OS for iPod touch 2.1 through 2.1 does not restrict an IFRAME's content display to the boundaries of the IFRAME, which allows remote attackers to spoof a user interface via a crafted HTML document.