CVE-2005-0234: Medium severity Safari vulnerability
The International Domain Name (IDN) support in Safari 1.2.5 allows remote attackers to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses homograph characters from other character sets, which facilitates phishing attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0234?
CVE-2005-0234 is considered to have a medium severity due to its potential to facilitate phishing attacks.
How do I fix CVE-2005-0234?
To mitigate CVE-2005-0234, it is recommended to upgrade to a later version of Safari that addresses this vulnerability.
What types of attacks can CVE-2005-0234 facilitate?
CVE-2005-0234 can facilitate phishing attacks by allowing attackers to spoof domain names using homograph characters.
Which software versions are affected by CVE-2005-0234?
CVE-2005-0234 specifically affects Safari version 1.2.5.
What is the root cause of CVE-2005-0234?
The root cause of CVE-2005-0234 is the inadequate handling of punycode encoded domain names in Safari.