Apple

Safari

1647 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.67%
  • Veröffentlicht 15.01.2009 17:30:00
  • Zuletzt bearbeitet 16.06.2026 23:04:18

Unspecified vulnerability in Apple Safari on Mac OS X 10.5 and Windows allows remote attackers to read arbitrary files on a client machine via vectors related to the association of Safari with the (1) feed, (2) feeds, and (3) feedsearch URL types for...

  • EPSS 2.86%
  • Veröffentlicht 08.01.2009 19:30:11
  • Zuletzt bearbeitet 16.06.2026 23:04:12

Integer signedness error in Apple Safari allows remote attackers to read the contents of arbitrary memory locations, cause a denial of service (application crash), and probably have unspecified other impact via the array index of the arguments array ...

Exploit
  • EPSS 3.92%
  • Veröffentlicht 02.01.2009 19:30:00
  • Zuletzt bearbeitet 16.06.2026 23:01:03

Memory leak in WebKit.dll in WebKit, as used by Apple Safari 3.2 on Windows Vista SP1, allows remote attackers to cause a denial of service (memory consumption and browser crash) via a long ALINK attribute in a BODY element in an HTML document.

  • EPSS 5.85%
  • Veröffentlicht 25.11.2008 23:30:00
  • Zuletzt bearbeitet 16.06.2026 22:57:27

Safari in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 does not properly handle HTML TABLE elements, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and applicati...

  • EPSS 2.16%
  • Veröffentlicht 25.11.2008 23:30:00
  • Zuletzt bearbeitet 16.06.2026 22:57:27

Safari in Apple iPhone OS 2.0 through 2.1 and iPhone OS for iPod touch 2.1 through 2.1 does not restrict an IFRAME's content display to the boundaries of the IFRAME, which allows remote attackers to spoof a user interface via a crafted HTML document.

  • EPSS 2.15%
  • Veröffentlicht 25.11.2008 23:30:00
  • Zuletzt bearbeitet 16.06.2026 22:57:27

Safari in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 does not isolate the call-approval dialog from the process of launching new applications, which allows remote attackers to make arbitrary phone calls via a crafted...

  • EPSS 8.37%
  • Veröffentlicht 17.11.2008 18:18:47
  • Zuletzt bearbeitet 16.06.2026 22:56:10

Heap-based buffer overflow in CoreGraphics in Apple Safari before 3.2 on Windows, in iPhone OS 1.0 through 2.2.1, and in iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to execute arbitrary code or cause a denial of service (applic...

  • EPSS 0.32%
  • Veröffentlicht 17.11.2008 18:18:47
  • Zuletzt bearbeitet 16.06.2026 22:56:13

Apple Safari before 3.2 does not properly prevent caching of form data for form fields that have autocomplete disabled, which allows local users to obtain sensitive information by reading the browser's page cache.

  • EPSS 8.63%
  • Veröffentlicht 17.11.2008 18:18:47
  • Zuletzt bearbeitet 16.06.2026 22:57:23

The plug-in interface in WebKit in Apple Safari before 3.2 does not prevent plug-ins from accessing local URLs, which allows remote attackers to obtain sensitive information via vectors that "launch local files."

  • EPSS 7.08%
  • Veröffentlicht 16.09.2008 23:00:01
  • Zuletzt bearbeitet 16.06.2026 22:56:52

Off-by-one error in the _web_drawInRect:withFont:ellipsis:alignment:measureOnly function in WebKit in Safari in Apple iPhone 1.1.4 and 2.0 and iPod touch 1.1.4 and 2.0 allows remote attackers to cause a denial of service (browser crash) via a JavaScr...