- Description
- WebCore in Apple WebKit build 18794 allows remote attackers to cause a denial of service (null dereference and application crash) via a TD element with a large number in the ROWSPAN attribute, as demonstrated by a crash of OmniWeb 5.5.3 on Mac OS X 10.4.8, a different vulnerability than CVE-2006-2019.
- Source
- cve@mitre.org
- NVD status
- Analyzed
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:N/A:P
- nvd@nist.gov
- CWE-399
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:apple:safari:2.0.4_419.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B6D113B5-070D-4F91-AB5E-222D71C90EDF"
},
{
"criteria": "cpe:2.3:a:apple:webkit:build_18794:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0026565B-0264-495B-851F-5E71439DA8EA"
},
{
"criteria": "cpe:2.3:a:omnigroup:omniweb:5.5.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "BC068FD4-9B1B-42E3-9544-1E020602F96F"
}
],
"operator": "OR"
}
]
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:apple:mac_os_x:10.4.8:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "09ED46A8-1739-411C-8807-2A416BDB6DFE"
}
],
"operator": "OR"
}
]
}
]