First published: Wed May 26 2010(Updated: )
A use after free issue exists in WebKit's handling of geolocation events. Visiting a maliciously crafted website may lead to an unexpected application termination or arbitrary code execution. This issue is addressed through improved handing of geolocation events. References: Bugzilla: <a href="https://bugs.webkit.org/show_bug.cgi?id=39388">https://bugs.webkit.org/show_bug.cgi?id=39388</a> Trac: <a href="http://trac.webkit.org/changeset/59859">http://trac.webkit.org/changeset/59859</a> Acknowledgements: Red Hat would like to thank Drew Yao of Apple Product Security for responsibly reporting this issue. Upstream acknowledges Justin Schuh as the original reporter.
Credit: product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <5.0.375.70 | |
Red Hat Enterprise Linux | =6.0 | |
Canonical Ubuntu Linux | =10.10 | |
Canonical Ubuntu Linux | =9.10 | |
Canonical Ubuntu Linux | =10.04 | |
openSUSE openSUSE | =11.2 | |
openSUSE openSUSE | =11.3 | |
Fedoraproject Fedora | =13 | |
Fedoraproject Fedora | =12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.