Short Name |
HTTP:STC:SAFARI:WEBKIT-RANGEOBJ
|
Severity |
High
|
Recommended |
No
|
Recommended Action |
Drop
|
Category |
HTTP
|
Keywords |
Apple Safari WebKit Range Object Remote Code Execution
|
Release Date |
2011/03/24
|
Update Number |
1888
|
Supported Platforms |
idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+
|
HTTP: Apple Safari WebKit Range Object Remote Code Execution
This signature detects attempts to exploit a known vulnerability against Apple Safari WebKit. A successful attack can lead to a arbitrary remote code execution within the context of the affected application.
Extended Description
WebKit is prone to a remote code-execution vulnerability.
An attacker can exploit this issue by enticing an unsuspecting user into visiting a malicious webpage with a vulnerable application.
Successful exploits will allow attackers to execute arbitrary code in the context of the affected browser or cause denial-of-service conditions; other attacks may also be possible.
NOTE: This issue was previously discussed in BID 46654 (WebKit Multiple Memory Corruption Vulnerabilities) but has been given its own record to better document it.
Affected Products
- Apple iOS 2.0
- Apple iOS 2.1
- Apple iOS 3.2
- Apple iOS 3.2.1
- Apple iOS 3.2.2
- Apple iOS 4
- Apple iOS 4.0.1
- Apple iOS 4.0.2
- Apple iOS 4.1
- Apple iOS 4.2
- Apple iOS 4.2.1
- Apple iOS 4.2 beta
- Apple iPad
- Apple iPhone
- Apple iPod Touch
- Apple iTunes 10
- Apple iTunes 10.1
- Apple iTunes 9.0.0
- Apple iTunes 9.0.1
- Apple iTunes 9.0.1.8
- Apple iTunes 9.0.2
- Apple iTunes 9.1
- Apple iTunes 9.2
- Apple iTunes 9.2.1
- Apple Mobile Safari
- Apple Safari 4
- Apple Safari 4.0
- Apple Safari 4.0.1
- Apple Safari 4.0.2
- Apple Safari 4.0.2 For Windows
- Apple Safari 4.0.3
- Apple Safari 4.0.3 For Windows
- Apple Safari 4.0.4
- Apple Safari 4.0.4 For Windows
- Apple Safari 4.0.5
- Apple Safari 4.0.5 For Windows
- Apple Safari 4.0 Beta
- Apple Safari 4.1
- Apple Safari 4.1.1
- Apple Safari 4.1.2
- Apple Safari 4.1.2 for Windows
- Apple Safari 4.1.3
- Apple Safari 4.1.3 for Windows
- Apple Safari 4 Beta
- Apple Safari 4 For Windows
- Apple Safari 5.0
- Apple Safari 5.0.1
- Apple Safari 5.0.1 for Windows
- Apple Safari 5.0.2
- Apple Safari 5.0.2 for Windows
- Apple Safari 5.0.3
- Apple Safari 5.0.3 for Windows
- Apple Safari 5.0 For Windows
- WebKit Open Source Project WebKit 1.2.2
- WebKit Open Source Project WebKit 1.2.2-1
- WebKit Open Source Project WebKit 1.2.3
- WebKit Open Source Project WebKit 1.2.5
- WebKit Open Source Project WebKit 1.2.X
- WebKit Open Source Project WebKit R38566
- WebKit Open Source Project WebKit R51295
- WebKit Open Source Project WebKit R52401
- WebKit Open Source Project WebKit R52833
- WebKit Open Source Project WebKit r77705
- WebKit Open Source Project WebKit
References