CVE-2010-5070: Medium severity safari vulnerability
The JavaScript implementation in Apple Safari 4 does not properly restrict the set of values contained in the object returned by the getComputedStyle method, which allows remote attackers to obtain sensitive information about visited web pages by calling this method, a different vulnerability than CVE-2010-2264. NOTE: this may overlap CVE-2010-5073.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-5070?
CVE-2010-5070 is classified as a medium severity vulnerability due to its potential for sensitive information disclosure.
How do I fix CVE-2010-5070?
To fix CVE-2010-5070, users should update their Apple Safari browser to the latest version that addresses this vulnerability.
What type of vulnerability is CVE-2010-5070?
CVE-2010-5070 is a vulnerability that allows remote attackers to access sensitive information through improper restrictions in the getComputedStyle method.
Which versions of Safari are affected by CVE-2010-5070?
CVE-2010-5070 affects multiple versions of Apple Safari, including versions 4.0.0b, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.5, 4.1, 4.1.1, 4.1.2, and 4.1.3.
What impact does CVE-2010-5070 have on users?
The impact of CVE-2010-5070 allows attackers to potentially retrieve sensitive data about websites that a user has visited.