First published: Wed Mar 03 2010(Updated: )
cfnetwork.dll 1.450.5.0 in CFNetwork, as used by safari.exe 531.21.10 in Apple Safari 4.0.4 on Windows, allows remote attackers to cause a denial of service (application crash) via a long string in the SRC attribute of a (1) IMG or (2) IFRAME element.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mobile Safari | =4.0.4 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0925 has been classified as a denial of service vulnerability.
CVE-2010-0925 can cause application crashes in Apple Safari 4.0.4 on Windows.
CVE-2010-0925 is caused by a long string in the SRC attribute of IMG or IFRAME elements.
The recommended fix for CVE-2010-0925 is to upgrade to a version of Safari that does not have this vulnerability.
CVE-2010-0925 affects Apple Safari version 4.0.4.