CVE-2010-1415

Description

From CVE.org

WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, does not properly handle libxml contexts, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted HTML document, related to an "API abuse issue."

Acknowledgements

Red Hat would like to thank Drew Yao (Apple Product Security) for reporting this issue. Upstream acknowledges Aki Helin (OUSPG) as the original reporter.

Frequently Asked Questions

Want to get errata notifications? Sign up here.