ID

VAR-201007-0318


CVE

CVE-2010-1783


TITLE

Apple Safari of WebKit Vulnerable to arbitrary code execution

Trust: 0.8

sources: JVNDB: JVNDB-2010-001849

DESCRIPTION

WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and webkitgtk before 1.2.6; does not properly handle dynamic modification of a text node, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document. WebKit is prone to a remote memory corruption vulnerability. An attacker can exploit this issue by tricking an unsuspecting victim into viewing a web page containing malicious content. A successful exploit will result in the execution of arbitrary attacker-supplied code in the context of the user running the affected application. This issue has been addressed in Apple Safari 5.0.1 and 4.1.1. NOTE: This issue was previously covered in BID 42020 (Apple Safari Prior to 5.0.1 and 4.1.1 Multiple Security Vulnerabilities) but has been given its own record to better document it. Apple Apple Safari is a web browser developed by Apple (Apple), and is the default browser included with Mac OS X and iOS operating systems. Please consult the CVE web links for further information. The updated packages have been upgraded to the latest version (1.2.7) to correct these issues. The verification of md5 checksums and GPG signatures is performed automatically for you. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2188-1 security@debian.org http://www.debian.org/security/ Giuseppe Iuculano March 10, 2011 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : webkit Vulnerability : several Problem type : remote Debian-specific: no CVE ID : CVE-2010-1783 CVE-2010-2901 CVE-2010-4199 CVE-2010-4040 CVE-2010-4492 CVE-2010-4493 CVE-2010-4577 CVE-2010-4578 CVE-2010-0474 CVE-2011-0482 CVE-2011-0778 Several vulnerabilities have been discovered in webkit, a Web content engine library for Gtk+. CVE-2010-2901 The rendering implementation in WebKit allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors. CVE-2010-4492 Use-after-free vulnerability in WebKit allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG animations. CVE-2010-4493 Use-after-free vulnerability in Webkit allows remote attackers to cause a denial of service via vectors related to the handling of mouse dragging events CVE-2010-4577 The CSSParser::parseFontFaceSrc function in WebCore/css/CSSParser.cpp in WebKit does not properly parse Cascading Style Sheets (CSS) token sequences, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted local font, related to "Type Confusion." CVE-2010-4578 WebKit does not properly perform cursor handling, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to "stale pointers." CVE-2011-0482 WebKit does not properly perform a cast of an unspecified variable during handling of anchors, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted HTML document CVE-2011-0778 WebKit does not properly restrict drag and drop operations, which might allow remote attackers to bypass the Same Origin Policy via unspecified vectors. For the stable distribution (squeeze), these problems have been fixed in version 1.2.7-0+squeeze1 For the testing distribution (wheezy), and the unstable distribution (sid), these problems have been fixed in version 1.2.7-1 Security support for WebKit has been discontinued for the oldstable distribution (lenny). The current version in oldstable is not supported by upstream anymore and is affected by several security issues. Backporting fixes for these and any future issues has become unfeasible and therefore we need to drop our security support for the version in oldstable. We recommend that you upgrade your webkit packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iEYEARECAAYFAk14wQsACgkQNxpp46476aoXmwCeKgjoeW/tk75Uh9AwrLtl/FHh GkwAn1jIKnQkWAe61ANCesQGGMK2BAuB =saVN -----END PGP SIGNATURE----- _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/ . - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 201412-09 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: High Title: Multiple packages, Multiple vulnerabilities fixed in 2011 Date: December 11, 2014 Bugs: #194151, #294253, #294256, #334087, #344059, #346897, #350598, #352608, #354209, #355207, #356893, #358611, #358785, #358789, #360891, #361397, #362185, #366697, #366699, #369069, #370839, #372971, #376793, #381169, #386321, #386361 ID: 201412-09 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======== This GLSA contains notification of vulnerabilities found in several Gentoo packages which have been fixed prior to January 1, 2012. The worst of these vulnerabilities could lead to local privilege escalation and remote code execution. Please see the package list and CVE identifiers below for more information. Background ========== For more information on the packages listed in this GLSA, please see their homepage referenced in the ebuild. Affected packages ================= ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 games-sports/racer-bin >= 0.5.0-r1 Vulnerable! 2 media-libs/fmod < 4.38.00 >= 4.38.00 3 dev-php/PEAR-Mail < 1.2.0 >= 1.2.0 4 sys-fs/lvm2 < 2.02.72 >= 2.02.72 5 app-office/gnucash < 2.4.4 >= 2.4.4 6 media-libs/xine-lib < 1.1.19 >= 1.1.19 7 media-sound/lastfmplayer < 1.5.4.26862-r3 >= 1.5.4.26862-r3 8 net-libs/webkit-gtk < 1.2.7 >= 1.2.7 9 sys-apps/shadow < 4.1.4.3 >= 4.1.4.3 10 dev-php/PEAR-PEAR < 1.9.2-r1 >= 1.9.2-r1 11 dev-db/unixODBC < 2.3.0-r1 >= 2.3.0-r1 12 sys-cluster/resource-agents < 1.0.4-r1 >= 1.0.4-r1 13 net-misc/mrouted < 3.9.5 >= 3.9.5 14 net-misc/rsync < 3.0.8 >= 3.0.8 15 dev-libs/xmlsec < 1.2.17 >= 1.2.17 16 x11-apps/xrdb < 1.0.9 >= 1.0.9 17 net-misc/vino < 2.32.2 >= 2.32.2 18 dev-util/oprofile < 0.9.6-r1 >= 0.9.6-r1 19 app-admin/syslog-ng < 3.2.4 >= 3.2.4 20 net-analyzer/sflowtool < 3.20 >= 3.20 21 gnome-base/gdm < 3.8.4-r3 >= 3.8.4-r3 22 net-libs/libsoup < 2.34.3 >= 2.34.3 23 app-misc/ca-certificates < 20110502-r1 >= 20110502-r1 24 dev-vcs/gitolite < 1.5.9.1 >= 1.5.9.1 25 dev-util/qt-creator < 2.1.0 >= 2.1.0 ------------------------------------------------------------------- NOTE: Certain packages are still vulnerable. Users should migrate to another package if one is available or wait for the existing packages to be marked stable by their architecture maintainers. ------------------------------------------------------------------- 25 affected packages Description =========== Vulnerabilities have been discovered in the packages listed below. Please review the CVE identifiers in the Reference section for details. * FMOD Studio * PEAR Mail * LVM2 * GnuCash * xine-lib * Last.fm Scrobbler * WebKitGTK+ * shadow tool suite * PEAR * unixODBC * Resource Agents * mrouted * rsync * XML Security Library * xrdb * Vino * OProfile * syslog-ng * sFlow Toolkit * GNOME Display Manager * libsoup * CA Certificates * Gitolite * QtCreator * Racer Impact ====== A context-dependent attacker may be able to gain escalated privileges, execute arbitrary code, cause Denial of Service, obtain sensitive information, or otherwise bypass security restrictions. Workaround ========== There are no known workarounds at this time. Resolution ========== All FMOD Studio users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=media-libs/fmod-4.38.00" All PEAR Mail users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=dev-php/PEAR-Mail-1.2.0" All LVM2 users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=sys-fs/lvm2-2.02.72" All GnuCash users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=app-office/gnucash-2.4.4" All xine-lib users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=media-libs/xine-lib-1.1.19" All Last.fm Scrobbler users should upgrade to the latest version: # emerge --sync # emerge -a --oneshot -v ">=media-sound/lastfmplayer-1.5.4.26862-r3" All WebKitGTK+ users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=net-libs/webkit-gtk-1.2.7" All shadow tool suite users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=sys-apps/shadow-4.1.4.3" All PEAR users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=dev-php/PEAR-PEAR-1.9.2-r1" All unixODBC users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=dev-db/unixODBC-2.3.0-r1" All Resource Agents users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot -v ">=sys-cluster/resource-agents-1.0.4-r1" All mrouted users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=net-misc/mrouted-3.9.5" All rsync users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=net-misc/rsync-3.0.8" All XML Security Library users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=dev-libs/xmlsec-1.2.17" All xrdb users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=x11-apps/xrdb-1.0.9" All Vino users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=net-misc/vino-2.32.2" All OProfile users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=dev-util/oprofile-0.9.6-r1" All syslog-ng users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=app-admin/syslog-ng-3.2.4" All sFlow Toolkit users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=net-analyzer/sflowtool-3.20" All GNOME Display Manager users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=gnome-base/gdm-3.8.4-r3" All libsoup users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=net-libs/libsoup-2.34.3" All CA Certificates users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot -v ">=app-misc/ca-certificates-20110502-r1" All Gitolite users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=dev-vcs/gitolite-1.5.9.1" All QtCreator users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=dev-util/qt-creator-2.1.0" Gentoo has discontinued support for Racer. We recommend that users unmerge Racer: # emerge --unmerge "games-sports/racer-bin" NOTE: This is a legacy GLSA. Updates for all affected architectures have been available since 2012. It is likely that your system is already no longer affected by these issues. References ========== [ 1 ] CVE-2007-4370 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-4370 [ 2 ] CVE-2009-4023 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2009-4023 [ 3 ] CVE-2009-4111 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2009-4111 [ 4 ] CVE-2010-0778 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-0778 [ 5 ] CVE-2010-1780 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1780 [ 6 ] CVE-2010-1782 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1782 [ 7 ] CVE-2010-1783 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1783 [ 8 ] CVE-2010-1784 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1784 [ 9 ] CVE-2010-1785 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1785 [ 10 ] CVE-2010-1786 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1786 [ 11 ] CVE-2010-1787 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1787 [ 12 ] CVE-2010-1788 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1788 [ 13 ] CVE-2010-1790 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1790 [ 14 ] CVE-2010-1791 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1791 [ 15 ] CVE-2010-1792 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1792 [ 16 ] CVE-2010-1793 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1793 [ 17 ] CVE-2010-1807 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1807 [ 18 ] CVE-2010-1812 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1812 [ 19 ] CVE-2010-1814 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1814 [ 20 ] CVE-2010-1815 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-1815 [ 21 ] CVE-2010-2526 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-2526 [ 22 ] CVE-2010-2901 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-2901 [ 23 ] CVE-2010-3255 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-3255 [ 24 ] CVE-2010-3257 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-3257 [ 25 ] CVE-2010-3259 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-3259 [ 26 ] CVE-2010-3362 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-3362 [ 27 ] CVE-2010-3374 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-3374 [ 28 ] CVE-2010-3389 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-3389 [ 29 ] CVE-2010-3812 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-3812 [ 30 ] CVE-2010-3813 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-3813 [ 31 ] CVE-2010-3999 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-3999 [ 32 ] CVE-2010-4042 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-4042 [ 33 ] CVE-2010-4197 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-4197 [ 34 ] CVE-2010-4198 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-4198 [ 35 ] CVE-2010-4204 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-4204 [ 36 ] CVE-2010-4206 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-4206 [ 37 ] CVE-2010-4492 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-4492 [ 38 ] CVE-2010-4493 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-4493 [ 39 ] CVE-2010-4577 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-4577 [ 40 ] CVE-2010-4578 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-4578 [ 41 ] CVE-2011-0007 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-0007 [ 42 ] CVE-2011-0465 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-0465 [ 43 ] CVE-2011-0482 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-0482 [ 44 ] CVE-2011-0721 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-0721 [ 45 ] CVE-2011-0727 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-0727 [ 46 ] CVE-2011-0904 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-0904 [ 47 ] CVE-2011-0905 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-0905 [ 48 ] CVE-2011-1072 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-1072 [ 49 ] CVE-2011-1097 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-1097 [ 50 ] CVE-2011-1144 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-1144 [ 51 ] CVE-2011-1425 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-1425 [ 52 ] CVE-2011-1572 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-1572 [ 53 ] CVE-2011-1760 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-1760 [ 54 ] CVE-2011-1951 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-1951 [ 55 ] CVE-2011-2471 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-2471 [ 56 ] CVE-2011-2472 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-2472 [ 57 ] CVE-2011-2473 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-2473 [ 58 ] CVE-2011-2524 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-2524 [ 59 ] CVE-2011-3365 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-3365 [ 60 ] CVE-2011-3366 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-3366 [ 61 ] CVE-2011-3367 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-3367 Availability ============ This GLSA and any updates to it are available for viewing at the Gentoo Security Website: http://security.gentoo.org/glsa/glsa-201412-09.xml Concerns? ========= Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressed to security@gentoo.org or alternatively, you may file a bug at https://bugs.gentoo.org. License ======= Copyright 2014 Gentoo Foundation, Inc; referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. http://creativecommons.org/licenses/by-sa/2.5

Trust: 2.25

sources: NVD: CVE-2010-1783 // JVNDB: JVNDB-2010-001849 // BID: 42035 // VULHUB: VHN-44388 // PACKETSTORM: 98817 // PACKETSTORM: 99151 // PACKETSTORM: 129522

AFFECTED PRODUCTS

vendor:applemodel:safariscope:eqversion:4.0.5

Trust: 1.9

vendor:applemodel:safariscope:eqversion:4.0.4

Trust: 1.9

vendor:applemodel:safariscope:eqversion:4.0.3

Trust: 1.9

vendor:applemodel:safariscope:eqversion:4.0.2

Trust: 1.9

vendor:applemodel:safariscope:eqversion:4.0.1

Trust: 1.9

vendor:applemodel:safariscope:eqversion:4.0.0b

Trust: 1.6

vendor:applemodel:safariscope:eqversion:4.0

Trust: 1.6

vendor:applemodel:safariscope:eqversion:4

Trust: 1.1

vendor:applemodel:safariscope:lteversion:5.0

Trust: 1.0

vendor:applemodel:webkitscope:eqversion:*

Trust: 1.0

vendor:applemodel:safariscope:lteversion:4.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:5.0

Trust: 0.9

vendor:applemodel:mac os xscope:eqversion:v10.4.11

Trust: 0.8

vendor:applemodel:mac os xscope:eqversion:v10.5.8

Trust: 0.8

vendor:applemodel:mac os x serverscope:eqversion:v10.4.11

Trust: 0.8

vendor:applemodel:mac os x serverscope:eqversion:v10.5.8

Trust: 0.8

vendor:applemodel:iosscope:eqversion:2.0 to 4.0.2 (iphone 3g after )

Trust: 0.8

vendor:applemodel:iosscope:eqversion:2.1 to 4.0.2 (ipod touch (2nd generation) after )

Trust: 0.8

vendor:applemodel:iosscope:eqversion:3.2 to 3.2.2 (ipad for )

Trust: 0.8

vendor:applemodel:ipadscope: - version: -

Trust: 0.8

vendor:applemodel:iphonescope: - version: -

Trust: 0.8

vendor:applemodel:ipod touchscope: - version: -

Trust: 0.8

vendor:applemodel:itunesscope:eqversion:10

Trust: 0.8

vendor:applemodel:safariscope:eqversion:5

Trust: 0.8

vendor:red hatmodel:enterprise linux desktopscope:eqversion:6

Trust: 0.8

vendor:red hatmodel:enterprise linux hpc nodescope:eqversion:6

Trust: 0.8

vendor:red hatmodel:enterprise linux serverscope:eqversion:6

Trust: 0.8

vendor:red hatmodel:enterprise linux workstationscope:eqversion:6

Trust: 0.8

vendor:applemodel:webkitscope: - version: -

Trust: 0.6

vendor:webkitmodel:open source project webkitscope:eqversion:1.2.3

Trust: 0.3

vendor:webkitmodel:open source project webkitscope:eqversion:1.2.2

Trust: 0.3

vendor:webkitmodel:open source project webkit r52833scope: - version: -

Trust: 0.3

vendor:webkitmodel:open source project webkit r52401scope: - version: -

Trust: 0.3

vendor:webkitmodel:open source project webkit r51295scope: - version: -

Trust: 0.3

vendor:webkitmodel:open source project webkit r38566scope: - version: -

Trust: 0.3

vendor:webkitmodel:open source project webkitscope:eqversion:1.2.2-1

Trust: 0.3

vendor:webkitmodel:open source project webkitscope:eqversion:0

Trust: 0.3

vendor:ubuntumodel:linux sparcscope:eqversion:9.10

Trust: 0.3

vendor:ubuntumodel:linux powerpcscope:eqversion:9.10

Trust: 0.3

vendor:ubuntumodel:linux lpiascope:eqversion:9.10

Trust: 0.3

vendor:ubuntumodel:linux i386scope:eqversion:9.10

Trust: 0.3

vendor:ubuntumodel:linux amd64scope:eqversion:9.10

Trust: 0.3

vendor:ubuntumodel:linux powerpcscope:eqversion:10.10

Trust: 0.3

vendor:ubuntumodel:linux i386scope:eqversion:10.10

Trust: 0.3

vendor:ubuntumodel:linux amd64scope:eqversion:10.10

Trust: 0.3

vendor:ubuntumodel:linux sparcscope:eqversion:10.04

Trust: 0.3

vendor:ubuntumodel:linux powerpcscope:eqversion:10.04

Trust: 0.3

vendor:ubuntumodel:linux i386scope:eqversion:10.04

Trust: 0.3

vendor:ubuntumodel:linux amd64scope:eqversion:10.04

Trust: 0.3

vendor:s u s emodel:opensusescope:eqversion:11.3

Trust: 0.3

vendor:s u s emodel:opensusescope:eqversion:11.2

Trust: 0.3

vendor:redhatmodel:enterprise linux workstation optionalscope:eqversion:6

Trust: 0.3

vendor:redhatmodel:enterprise linux workstationscope:eqversion:6

Trust: 0.3

vendor:redhatmodel:enterprise linux server optionalscope:eqversion:6

Trust: 0.3

vendor:redhatmodel:enterprise linux serverscope:eqversion:6

Trust: 0.3

vendor:redhatmodel:enterprise linux hpc node optionalscope:eqversion:6

Trust: 0.3

vendor:redhatmodel:enterprise linux desktop optionalscope:eqversion:6

Trust: 0.3

vendor:redhatmodel:enterprise linux desktopscope:eqversion:6

Trust: 0.3

vendor:mandrivamodel:linux mandrake x86 64scope:eqversion:2010.1

Trust: 0.3

vendor:mandrivamodel:linux mandrakescope:eqversion:2010.1

Trust: 0.3

vendor:gentoomodel:linuxscope: - version: -

Trust: 0.3

vendor:debianmodel:linux sparcscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux s/390scope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux powerpcscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux mipselscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux mipsscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux m68kscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux ia-64scope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux ia-32scope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux hppascope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux armelscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux armscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux amd64scope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux alphascope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linuxscope:eqversion:5.0

Trust: 0.3

vendor:applemodel:safari for windowsscope:eqversion:4.0.5

Trust: 0.3

vendor:applemodel:safari for windowsscope:eqversion:4.0.4

Trust: 0.3

vendor:applemodel:safari for windowsscope:eqversion:4.0.3

Trust: 0.3

vendor:applemodel:safari for windowsscope:eqversion:4.0.2

Trust: 0.3

vendor:applemodel:safari for windowsscope:eqversion:5.0

Trust: 0.3

vendor:applemodel:safariscope:eqversion:4.1

Trust: 0.3

vendor:applemodel:safari for windowsscope:eqversion:4

Trust: 0.3

vendor:applemodel:safari betascope:eqversion:4

Trust: 0.3

vendor:applemodel:itunesscope:eqversion:9.0.2

Trust: 0.3

vendor:applemodel:itunesscope:eqversion:9.0.1.8

Trust: 0.3

vendor:applemodel:itunesscope:eqversion:9.0.1

Trust: 0.3

vendor:applemodel:itunesscope:eqversion:9.0

Trust: 0.3

vendor:applemodel:itunesscope:eqversion:9.2

Trust: 0.3

vendor:applemodel:itunesscope:eqversion:9.1

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:3.1.3

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:3.1.2

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:3.1.1

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.2.1

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.0.2

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.0.1

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:3.0

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.2

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.1

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.0

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:4.0.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:3.2.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:3.1.3

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:3.1.2

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:3.0.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.2.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.0.2

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.0.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:4.0

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:3.2

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:3.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:3.0

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.2

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.0

Trust: 0.3

vendor:applemodel:ipadscope:eqversion:3.2.1

Trust: 0.3

vendor:applemodel:ipadscope:eqversion:3.2.2

Trust: 0.3

vendor:applemodel:ipadscope:eqversion:3.2

Trust: 0.3

vendor:applemodel:ipadscope:eqversion:0

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.0.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.0.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:3.2.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:3.2.1

Trust: 0.3

vendor:applemodel:ios betascope:eqversion:4.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4

Trust: 0.3

vendor:applemodel:iosscope:eqversion:3.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:2.0

Trust: 0.3

vendor:webkitmodel:open source project webkitscope:neversion:1.2.5

Trust: 0.3

vendor:applemodel:safariscope:neversion:5.0.1

Trust: 0.3

vendor:applemodel:safariscope:neversion:4.1.1

Trust: 0.3

vendor:applemodel:itunesscope:neversion:10

Trust: 0.3

vendor:applemodel:iosscope:neversion:4.2

Trust: 0.3

vendor:applemodel:iosscope:neversion:4.1

Trust: 0.3

sources: BID: 42035 // JVNDB: JVNDB-2010-001849 // CNNVD: CNNVD-201007-316 // NVD: CVE-2010-1783

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2010-1783
value: HIGH

Trust: 1.0

NVD: CVE-2010-1783
value: HIGH

Trust: 0.8

CNNVD: CNNVD-201007-316
value: CRITICAL

Trust: 0.6

VULHUB: VHN-44388
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2010-1783
severity: HIGH
baseScore: 9.3
vectorString: AV:N/AC:M/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-44388
severity: HIGH
baseScore: 9.3
vectorString: AV:N/AC:M/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-44388 // JVNDB: JVNDB-2010-001849 // CNNVD: CNNVD-201007-316 // NVD: CVE-2010-1783

PROBLEMTYPE DATA

problemtype:CWE-119

Trust: 1.9

sources: VULHUB: VHN-44388 // JVNDB: JVNDB-2010-001849 // NVD: CVE-2010-1783

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201007-316

TYPE

buffer overflow

Trust: 0.6

sources: CNNVD: CNNVD-201007-316

CONFIGURATIONS

sources: JVNDB: JVNDB-2010-001849

PATCH

title:HT4276url:http://support.apple.com/kb/HT4276

Trust: 0.8

title:HT4328url:http://support.apple.com/kb/HT4328

Trust: 0.8

title:HT4334url:http://support.apple.com/kb/HT4334

Trust: 0.8

title:HT4456url:http://support.apple.com/kb/HT4456

Trust: 0.8

title:HT4276url:http://support.apple.com/kb/HT4276?viewlocale=ja_JP

Trust: 0.8

title:HT4328url:http://support.apple.com/kb/HT4328?viewlocale=ja_JP

Trust: 0.8

title:HT4334url:http://support.apple.com/kb/HT4334?viewlocale=ja_JP

Trust: 0.8

title:RHSA-2011:0177url:https://rhn.redhat.com/errata/RHSA-2011-0177.html

Trust: 0.8

sources: JVNDB: JVNDB-2010-001849

EXTERNAL IDS

db:NVDid:CVE-2010-1783

Trust: 3.1

db:BIDid:42020

Trust: 1.7

db:BIDid:42035

Trust: 1.2

db:SECUNIAid:42314

Trust: 1.1

db:SECUNIAid:43086

Trust: 1.1

db:SECUNIAid:43068

Trust: 1.1

db:SECUNIAid:41856

Trust: 1.1

db:VUPENid:ADV-2010-2722

Trust: 1.1

db:VUPENid:ADV-2011-0216

Trust: 1.1

db:VUPENid:ADV-2011-0552

Trust: 1.1

db:VUPENid:ADV-2011-0212

Trust: 1.1

db:JVNDBid:JVNDB-2010-001849

Trust: 0.8

db:CNNVDid:CNNVD-201007-316

Trust: 0.7

db:NSFOCUSid:15474

Trust: 0.6

db:APPLEid:APPLE-SA-2010-07-28-1

Trust: 0.6

db:PACKETSTORMid:99151

Trust: 0.2

db:VULHUBid:VHN-44388

Trust: 0.1

db:PACKETSTORMid:98817

Trust: 0.1

db:PACKETSTORMid:129522

Trust: 0.1

sources: VULHUB: VHN-44388 // BID: 42035 // JVNDB: JVNDB-2010-001849 // PACKETSTORM: 98817 // PACKETSTORM: 99151 // PACKETSTORM: 129522 // CNNVD: CNNVD-201007-316 // NVD: CVE-2010-1783

REFERENCES

url:http://lists.apple.com/archives/security-announce/2010//jul/msg00001.html

Trust: 1.7

url:http://www.securityfocus.com/bid/42020

Trust: 1.7

url:http://support.apple.com/kb/ht4276

Trust: 1.7

url:http://lists.apple.com/archives/security-announce/2010//sep/msg00002.html

Trust: 1.1

url:http://lists.apple.com/archives/security-announce/2010//nov/msg00003.html

Trust: 1.1

url:http://support.apple.com/kb/ht4334

Trust: 1.1

url:http://support.apple.com/kb/ht4456

Trust: 1.1

url:http://www.debian.org/security/2011/dsa-2188

Trust: 1.1

url:http://www.mandriva.com/security/advisories?name=mdvsa-2011:039

Trust: 1.1

url:https://oval.cisecurity.org/repository/search/definition/oval%3aorg.mitre.oval%3adef%3a11820

Trust: 1.1

url:http://www.redhat.com/support/errata/rhsa-2011-0177.html

Trust: 1.1

url:http://secunia.com/advisories/41856

Trust: 1.1

url:http://secunia.com/advisories/42314

Trust: 1.1

url:http://secunia.com/advisories/43068

Trust: 1.1

url:http://secunia.com/advisories/43086

Trust: 1.1

url:http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html

Trust: 1.1

url:http://www.ubuntu.com/usn/usn-1006-1

Trust: 1.1

url:http://www.vupen.com/english/advisories/2010/2722

Trust: 1.1

url:http://www.vupen.com/english/advisories/2011/0212

Trust: 1.1

url:http://www.vupen.com/english/advisories/2011/0216

Trust: 1.1

url:http://www.vupen.com/english/advisories/2011/0552

Trust: 1.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1783

Trust: 0.9

url:http://jvn.jp/cert/jvnvu568637

Trust: 0.8

url:http://jvn.jp/cert/jvnvu407599

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2010-1783

Trust: 0.8

url:http://www.securityfocus.com/bid/42035

Trust: 0.8

url:http://www.nsfocus.net/vulndb/15474

Trust: 0.6

url:http://www.apple.com/safari/

Trust: 0.3

url:https://bugs.launchpad.net/ubuntu/+source/webkit/+bug/660075

Trust: 0.3

url:http://www.webkit.org/

Trust: 0.3

url:http://secunia.com/

Trust: 0.2

url:http://lists.grok.org.uk/full-disclosure-charter.html

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2010-2901

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2010-1783

Trust: 0.2

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1405

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1410

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1392

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-2264

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1400

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1790

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-4206

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0650

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1788

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0048

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1416

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1403

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1387

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1387

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1386

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2009-2797

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1415

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1793

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1759

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1422

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1772

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1807

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1408

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1782

Trust: 0.1

url:http://www.mandriva.com/security/advisories

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1409

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1784

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1664

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1791

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1395

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1421

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1386

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1766

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1758

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1395

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2009-2797

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-4040

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1781

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0054

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1390

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1397

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1391

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1774

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1394

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1396

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-3257

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0053

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2009-2841

Trust: 0.1

url:http://www.mandriva.com/security/

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1760

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1417

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0047

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1419

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-3248

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1391

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-2647

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-3115

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1396

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1418

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1773

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-3255

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0048

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0656

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0051

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-4204

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1393

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0049

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1412

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-3114

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1407

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1393

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2009-2841

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0046

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0656

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0052

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0047

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1767

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1392

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1389

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1780

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1394

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0314

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1390

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1764

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1398

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0650

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1404

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1414

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1787

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0647

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1406

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-3259

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0050

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0051

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1771

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0049

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-3813

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1402

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1389

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1785

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-4197

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1501

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1815

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-3113

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1762

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1814

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1401

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0054

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0651

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0314

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-3119

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0050

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0651

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-2648

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-4198

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1665

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1398

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0046

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1792

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0053

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0647

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1761

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-3812

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1397

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-0052

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1812

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1786

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-3116

Trust: 0.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2010-1770

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-4040

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-4199

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-4492

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-4493

Trust: 0.1

url:http://www.debian.org/security/faq

Trust: 0.1

url:http://www.debian.org/security/

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0474

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2011-0482

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2011-0778

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-4577

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-4578

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-1425

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-3259

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1791

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-3374

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1785

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1793

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-4493

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-1760

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1790

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-3257

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-3365

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1787

Trust: 0.1

url:http://creativecommons.org/licenses/by-sa/2.5

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1791

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2009-4023

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1785

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1814

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1784

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-3257

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1788

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-0721

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-0007

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-2471

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2009-4111

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-3812

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-2473

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-4577

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1815

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-3259

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2007-4370

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1812

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-1951

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-4198

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1786

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1814

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-0904

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-2526

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-0778

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1792

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-0482

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-1144

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-0778

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-4578

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-1572

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1786

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-3999

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1792

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1782

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1788

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-3255

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2009-4023

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-4492

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1815

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1807

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1787

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-0905

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2009-4111

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-3367

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1782

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-3389

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-2526

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2007-4370

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1807

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1783

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-3389

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-2901

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-2472

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1784

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-3374

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-3362

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1780

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1790

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-2524

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-4204

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-3255

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-0465

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-1780

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-4206

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-3362

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-3813

Trust: 0.1

url:http://security.gentoo.org/

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-4197

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-1097

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1793

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-3366

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-1072

Trust: 0.1

url:http://security.gentoo.org/glsa/glsa-201412-09.xml

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2011-0727

Trust: 0.1

url:https://bugs.gentoo.org.

Trust: 0.1

url:http://nvd.nist.gov/nvd.cfm?cvename=cve-2010-4042

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2010-1812

Trust: 0.1

sources: VULHUB: VHN-44388 // BID: 42035 // JVNDB: JVNDB-2010-001849 // PACKETSTORM: 98817 // PACKETSTORM: 99151 // PACKETSTORM: 129522 // CNNVD: CNNVD-201007-316 // NVD: CVE-2010-1783

CREDITS

Jeremiah Grossman

Trust: 0.6

sources: CNNVD: CNNVD-201007-316

SOURCES

db:VULHUBid:VHN-44388
db:BIDid:42035
db:JVNDBid:JVNDB-2010-001849
db:PACKETSTORMid:98817
db:PACKETSTORMid:99151
db:PACKETSTORMid:129522
db:CNNVDid:CNNVD-201007-316
db:NVDid:CVE-2010-1783

LAST UPDATE DATE

2024-11-23T20:02:20.689000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-44388date:2017-09-19T00:00:00
db:BIDid:42035date:2015-04-13T22:25:00
db:JVNDBid:JVNDB-2010-001849date:2011-02-07T00:00:00
db:CNNVDid:CNNVD-201007-316date:2011-07-19T00:00:00
db:NVDid:CVE-2010-1783date:2024-11-21T01:15:11.413

SOURCES RELEASE DATE

db:VULHUBid:VHN-44388date:2010-07-30T00:00:00
db:BIDid:42035date:2010-07-28T00:00:00
db:JVNDBid:JVNDB-2010-001849date:2010-08-20T00:00:00
db:PACKETSTORMid:98817date:2011-03-02T14:45:32
db:PACKETSTORMid:99151date:2011-03-10T14:00:37
db:PACKETSTORMid:129522date:2014-12-12T17:42:13
db:CNNVDid:CNNVD-201007-316date:2010-07-22T00:00:00
db:NVDid:CVE-2010-1783date:2010-07-30T20:30:01.973