Apple Mac OS X KHTMLParser denial of service

macos-khtmlparser-dos (23819) The risk level is classified as LowLow Risk

Description:

Apple Mac OS X is vulnerable to a denial of service. A remote attacker could create a specially-crafted HTML file that when parsed by KHTMLParser would cause the application to crash.


Consequences:

Denial of Service

Remedy:

Apply Apple Security Update 2006-001, available from the Apple Web site. See References.

References:

  • Apple Web site: APPLE-SA-2006 Security Update 2006-001.
  • Security-Protocols Advisory December 21, 2005: Mac OS X <= 10.4.3 KHTMLParser DoS.
  • BID-16045: Apple Mac OS X KHTMLParser Remote Denial of Service Vulnerability
  • BID-16907: Apple Mac OS X Security Update 2006-001 Multiple Vulnerabilities
  • CVE-2005-4504: The khtml::RenderTableSection::ensureRows function in KHTMLParser in Apple Mac OS X 10.4.3 and earlier, as used by Safari and TextEdit, allows remote attackers to cause a denial of service (memory consumption and application crash) via HTML files with a large ROWSPAN attribute in a TD tag.
  • SA18220: Mac OS X KHTMLParser Denial of Service Weakness
  • SA19064: Mac OS X Security Update Fixes Multiple Vulnerabilities
  • US-CERT VU#351217: Apple Safari WebKit component vulnerable to buffer overflow
  • VUPEN/ADV-2005-3058: Apple Mac OS X KHTMLParser Remote Command Execution Vulnerability
  • VUPEN/ADV-2006-0791: Apple Mac OS X Code Execution and Denial of Service Vulnerabilities

Platforms Affected:

  • Apple Mac OS X 10.0
  • Apple Mac OS X 10.0.4
  • Apple Mac OS X 10.1
  • Apple Mac OS X 10.1.1
  • Apple Mac OS X 10.1.2
  • Apple Mac OS X 10.1.3
  • Apple Mac OS X 10.1.4
  • Apple Mac OS X 10.1.5
  • Apple Mac OS X 10.2
  • Apple Mac OS X 10.2.1
  • Apple Mac OS X 10.2.2
  • Apple Mac OS X 10.2.3
  • Apple Mac OS X 10.2.4
  • Apple Mac OS X 10.2.5
  • Apple Mac OS X 10.2.6
  • Apple Mac OS X 10.2.7
  • Apple Mac OS X 10.2.8
  • Apple Mac OS X 10.3
  • Apple Mac OS X 10.3.1
  • Apple Mac OS X 10.3.2
  • Apple Mac OS X 10.3.3
  • Apple Mac OS X 10.3.4
  • Apple Mac OS X 10.3.5
  • Apple Mac OS X 10.3.6
  • Apple Mac OS X 10.3.7
  • Apple Mac OS X 10.3.8
  • Apple Mac OS X 10.3.9
  • Apple Mac OS X 10.4
  • Apple Mac OS X 10.4.1
  • Apple Mac OS X 10.4.10
  • Apple Mac OS X 10.4.11
  • Apple Mac OS X 10.4.2
  • Apple Mac OS X 10.4.3
  • Apple Mac OS X Server 10.0
  • Apple Mac OS X Server 10.0.1
  • Apple Mac OS X Server 10.0.2
  • Apple Mac OS X Server 10.0.3
  • Apple Mac OS X Server 10.1
  • Apple Mac OS X Server 10.1.1
  • Apple Mac OS X Server 10.1.2
  • Apple Mac OS X Server 10.1.3
  • Apple Mac OS X Server 10.1.4
  • Apple Mac OS X Server 10.1.5
  • Apple Mac OS X Server 10.2
  • Apple Mac OS X Server 10.2.1
  • Apple Mac OS X Server 10.2.2
  • Apple Mac OS X Server 10.2.3
  • Apple Mac OS X Server 10.2.4
  • Apple Mac OS X Server 10.2.5
  • Apple Mac OS X Server 10.2.6
  • Apple Mac OS X Server 10.2.7
  • Apple Mac OS X Server 10.2.8
  • Apple Mac OS X Server 10.3
  • Apple Mac OS X Server 10.3.1
  • Apple Mac OS X Server 10.3.2
  • Apple Mac OS X Server 10.3.3
  • Apple Mac OS X Server 10.3.4
  • Apple Mac OS X Server 10.3.5
  • Apple Mac OS X Server 10.3.6
  • Apple Mac OS X Server 10.3.7
  • Apple Mac OS X Server 10.3.8
  • Apple Mac OS X Server 10.3.9
  • Apple Mac OS X Server 10.4
  • Apple Mac OS X Server 10.4.1
  • Apple Mac OS X Server 10.4.10
  • Apple Mac OS X Server 10.4.11
  • Apple Mac OS X Server 10.4.2
  • Apple Mac OS X Server 10.4.3
  • Apple Safari 1.0
  • Apple Safari 1.1
  • Apple Safari 1.2
  • Apple Safari 1.2.1
  • Apple Safari 1.2.2
  • Apple Safari 1.2.3
  • Apple Safari 1.3
  • Apple Safari 2.0
  • Apple Safari 2.0.1
  • Apple Safari 2.0.2
  • Apple Textedit 1.4

Reported:

Dec 22, 2005

The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

For corrections or additions please email xforce@iss.net

Return to the main page