[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2010-3813Date: (C)2010-11-22   (M)2024-02-09


The WebCore::HTMLLinkElement::process function in WebCore/html/HTMLLinkElement.cpp in WebKit, as used in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4; webkitgtk before 1.2.6; and possibly other products does not verify whether DNS prefetching is enabled when processing an HTML LINK element, which allows remote attackers to bypass intended access restrictions, as demonstrated by an HTML e-mail message that uses a LINK element for X-Confirm-Reading-To functionality.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 5.8
Exploit Score: 8.6
Impact Score: 4.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: NONE
  
Reference:
SECUNIA-42314
SECUNIA-43068
SECUNIA-43086
ADV-2010-3046
ADV-2011-0212
ADV-2011-0216
ADV-2011-0552
APPLE-SA-2010-11-18-1
APPLE-SA-2010-11-22-1
FEDORA-2011-0121
MDVSA-2011:039
RHSA-2011:0177
SUSE-SR:2011:002
http://support.apple.com/kb/HT4455
http://support.apple.com/kb/HT4456
http://trac.webkit.org/changeset/63622
https://bugs.webkit.org/show_bug.cgi?id=42500
https://bugzilla.redhat.com/show_bug.cgi?id=667024
oval:org.mitre.oval:def:12293

CPE    124
cpe:/o:apple:mac_os_x:10.4.9
cpe:/o:apple:mac_os_x:10.4.8
cpe:/o:apple:mac_os_x:10.4.5
cpe:/o:apple:mac_os_x:10.4.4
...
CWE    1
CWE-264
OVAL    10
oval:org.mitre.oval:def:12293
oval:org.secpod.oval:def:3796
oval:org.secpod.oval:def:3811
oval:org.secpod.oval:def:3783
...

© SecPod Technologies