Apple

Safari

1647 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 3.68%
  • Veröffentlicht 21.04.2006 22:02:00
  • Zuletzt bearbeitet 16.06.2026 22:24:04

Apple Safari 2.0.3 allows remote attackers to cause a denial of service and possibly execute code via a large CELLSPACING attribute in a TABLE tag, which triggers an error in KWQListIteratorImpl::KWQListIteratorImpl.

Exploit
  • EPSS 3.56%
  • Veröffentlicht 21.04.2006 22:02:00
  • Zuletzt bearbeitet 16.06.2026 22:24:04

Apple Safari 2.0.3 allows remote attackers to cause a denial of service and possibly execute code via an invalid FRAME tag, possibly due to (1) multiple SCROLLING attributes with no values, or (2) a SRC attribute with no value. NOTE: due to lack of ...

Exploit
  • EPSS 1.85%
  • Veröffentlicht 21.04.2006 22:02:00
  • Zuletzt bearbeitet 16.06.2026 22:24:04

The WebTextRenderer(WebInternal) _CG_drawRun:style:geometry: function in Apple Safari 2.0.3 allows remote attackers to cause a denial of service (application crash) via an HTML LI tag with a large VALUE attribute (list item number), which triggers a ...

  • EPSS 4.36%
  • Veröffentlicht 31.03.2006 11:06:00
  • Zuletzt bearbeitet 16.06.2026 22:23:11

Integer overflow in ImageIO in Apple Mac OS X 10.4 up to 10.4.5 allows remote attackers to cause a denial of service (crash) via a crafted JPEG image with malformed JPEG metadata, as demonstrated using Safari, aka "Deja-Doom".

  • EPSS 1.03%
  • Veröffentlicht 31.12.2005 05:00:00
  • Zuletzt bearbeitet 16.06.2026 22:19:13

Apple Safari 2.0.2 (aka 416.12) allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trusted site within a form to the malicious site. NOTE: the provenance of this information is unknown; the details ar...

Exploit
  • EPSS 11.91%
  • Veröffentlicht 22.12.2005 23:03:00
  • Zuletzt bearbeitet 16.06.2026 22:18:55

The khtml::RenderTableSection::ensureRows function in KHTMLParser in Apple Mac OS X 10.4.3 and earlier, as used by Safari and TextEdit, allows remote attackers to cause a denial of service (memory consumption and application crash) via HTML files wit...

  • EPSS 1.31%
  • Veröffentlicht 29.11.2005 21:03:00
  • Zuletzt bearbeitet 16.06.2026 22:17:50

Apple Safari 2.0.2 allows remote attackers to cause a denial of service (system slowdown) via a Javascript BODY onload event that calls the window function.

  • EPSS 1.09%
  • Veröffentlicht 26.10.2005 00:02:00
  • Zuletzt bearbeitet 16.06.2026 22:15:08

Safari after 2.0 in Apple Mac OS X 10.3.9 allows remote attackers to bypass domain restrictions via crafted web archives that cause Safari to render them as if they came from a different site.

Exploit
  • EPSS 3%
  • Veröffentlicht 21.09.2005 22:03:00
  • Zuletzt bearbeitet 16.06.2026 22:16:05

Apple Safari allows remote attackers to cause a denial of service (application crash) via a crafted data:// URL.

  • EPSS 4.77%
  • Veröffentlicht 19.08.2005 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:15:07

Safari in Mac OS X 10.3.9 and 10.4.2, when rendering Rich Text Format (RTF) files, can directly access URLs without performing the normal security checks, which allows remote attackers to execute arbitrary commands.