Required CVE Record Information
Description
Use-after-free vulnerability in WebKit before r65958, as used in Google Chrome before 6.0.472.59, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger use of document APIs such as document.close during parsing, as demonstrated by a Cascading Style Sheets (CSS) file referencing an invalid SVG font, aka rdar problem 8442098.
References 12 Total
- secunia.com: 43068 third-party-advisory
- oval.cisecurity.org: oval:org.mitre.oval:def:7405 vdb-entrysignature
- http://support.apple.com/kb/HT4981
- vupen.com: ADV-2011-0212 vdb-entry
- lists.apple.com: APPLE-SA-2011-10-11-1 vendor-advisory
- https://bugs.webkit.org/show_bug.cgi?id=44533
- http://googlechromereleases.blogspot.com/2010/09/stable-beta-channel-updates_14.html
- https://bugs.webkit.org/show_bug.cgi?id=43055
- lists.opensuse.org: SUSE-SR:2011:002 vendor-advisory
- http://support.apple.com/kb/HT4808
- lists.apple.com: APPLE-SA-2011-07-20-1 vendor-advisory
- http://code.google.com/p/chromium/issues/detail?id=50250
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 12 Total
- secunia.com: 43068 third-party-advisoryx_transferred
- oval.cisecurity.org: oval:org.mitre.oval:def:7405 vdb-entrysignaturex_transferred
- http://support.apple.com/kb/HT4981 x_transferred
- vupen.com: ADV-2011-0212 vdb-entryx_transferred
- lists.apple.com: APPLE-SA-2011-10-11-1 vendor-advisoryx_transferred
- https://bugs.webkit.org/show_bug.cgi?id=44533 x_transferred
- http://googlechromereleases.blogspot.com/2010/09/stable-beta-channel-updates_14.html x_transferred
- https://bugs.webkit.org/show_bug.cgi?id=43055 x_transferred
- lists.opensuse.org: SUSE-SR:2011:002 vendor-advisoryx_transferred
- http://support.apple.com/kb/HT4808 x_transferred
- lists.apple.com: APPLE-SA-2011-07-20-1 vendor-advisoryx_transferred
- http://code.google.com/p/chromium/issues/detail?id=50250 x_transferred