First published: Fri Mar 26 2010(Updated: )
JavaScriptCore.dll, as used in Apple Safari 4.0.5 on Windows XP SP3, allows remote attackers to cause a denial of service (application crash) via an HTML document composed of many successive occurrences of the <object> substring.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mobile Safari | =4.0.5 | |
Microsoft Windows XP | =sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-1131 has a severity rating that suggests it can lead to a denial of service condition.
CVE-2010-1131 can cause the Apple Safari browser to crash when processing specially crafted HTML documents.
CVE-2010-1131 specifically affects Apple Safari version 4.0.5 running on Windows XP SP3.
To protect against CVE-2010-1131, users should upgrade to a patched version of Safari or use an alternative browser.
There are no specific workarounds for CVE-2010-1131 other than updating the browser to avoid the vulnerability.