CVE-2007-0342: Null Pointer Dereference
WebCore in Apple WebKit build 18794 allows remote attackers to cause a denial of service (null dereference and application crash) via a TD element with a large number in the ROWSPAN attribute, as demonstrated by a crash of OmniWeb 5.5.3 on Mac OS X 10.4.8, a different vulnerability than CVE-2006-2019.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-0342?
CVE-2007-0342 is categorized as a denial of service vulnerability.
How does CVE-2007-0342 affect software?
CVE-2007-0342 allows remote attackers to cause application crashes through malformed HTML content.
Which applications are affected by CVE-2007-0342?
CVE-2007-0342 affects OmniWeb 5.5.3, Apple Safari 2.0.4_419.3, and Apple WebKit build 18794.
How can I mitigate the risks associated with CVE-2007-0342?
Mitigating CVE-2007-0342 involves updating to the latest versions of the affected software.
What are the symptoms of an exploit of CVE-2007-0342?
Exploitation of CVE-2007-0342 typically results in a null dereference and crashes of the web application.