First published: Fri Mar 12 2010(Updated: )
Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to "HTML object element fallback content."
Credit: product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mobile Safari | <=4.0.4 | |
Apple Mobile Safari | =4.0 | |
Apple Mobile Safari | =4.0.0b | |
Apple Mobile Safari | =4.0.1 | |
Apple Mobile Safari | =4.0.2 | |
Apple Mobile Safari | =4.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0047 is considered a high-severity vulnerability due to its potential for remote code execution and denial of service.
To fix CVE-2010-0047, update your Apple Safari browser to version 4.0.5 or later.
CVE-2010-0047 can lead to arbitrary code execution or application crashes via manipulated HTML content.
CVE-2010-0047 affects Apple Safari versions prior to 4.0.5, including all variants of 4.0 and below.
Users of vulnerable versions of Apple Safari, specifically on versions before 4.0.5, are at risk from CVE-2010-0047.