Apple Safari Webkit code execution
| safari-webkit-code-execution (23342) |
Description:
Safari Web browser running on Mac OS x and Mac OS X Server versions 1.3.9 and 10.4.3 could allow a remote attacker to execute arbitrary code on the victim's system caused by a vulnerability within Webkit. A remote attacker could host a malicious Web site that could exploit a buffer overflow vulnerability in Webkit to execute arbitrary code on the victim's system once the victim visits the malicious site.
Platforms Affected:
- Apple, Mac OS X 10.3.9
- Apple, Mac OS X 10.4.3
- Apple, Mac OS X Server 10.3.9
- Apple, Mac OS X Server 10.4.3
- Apple, Safari
Remedy:
Apply Security Update 2005-009, as listed in AppleCare Knowledge Base Document 302847. See References.
Consequences:
Gain Access
References:
- AppleCare Knowledge Base Document 302847, About Security Update 2005-009 at http://docs.info.apple.com/article.html?artnum=302847.
- BID-15647: RETIRED: Apple Mac OS X Security Update 2005-009 Multiple Vulnerabilities
- BID-29011: Apple Safari WebKit Unspecified Heap Overflow Vulnerability
- CVE-2005-3705: Heap-based buffer overflow in WebKit in Mac OS X and OS X Server 10.3.9 and 10.4.3, as used in applications such as Safari, allows remote attackers to execute arbitrary code via unknown attack vectors.
- OSVDB ID: 21276: Mac OS X WebKit Crafted Content Overflow
- SA17813: Mac OS X Security Update Fixes Multiple Vulnerabilities
- SECTRACK ID: 1015294: Apple Safari WebKit Buffer Overflow May Let Remote Users Execute Arbitrary Code and Other Bugs May Permit JavaScript Dialog Box Spoofing and File Download Location Modification
- VUPEN/ADV-2005-2659: Apple Security Update Fixes Multiple Mac OS X Vulnerabilities
Reported:
Nov 29, 2005
The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.
For corrections or additions please email xforce@iss.net
