CVE-2009-1710

WebKit in Apple Safari before 4.0 allows remote attackers to spoof the browser's display of (1) the host name, (2) security indicators, and unspecified other UI elements via a custom cursor in conjunction with a modified CSS3 hotspot property.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:0.8:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:0.9:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:1.0:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:1.0.3:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:1.1:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:1.2:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:1.3:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:1.3.1:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:1.3.2:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:2.0:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:2.0.2:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:2.0.4:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0.2:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0.3:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0.4:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:3.1:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:3.1.1:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:3.1.2:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:3.2.1:-:mac:*:*:*:*:*
cpe:2.3:a:apple:safari:3.2.3:-:mac:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:apple:safari:*:-:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0:-:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0.1:-:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0.2:-:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0.3:-:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.0.4:-:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.1:-:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.1.1:-:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.1.2:-:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.2:-:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.2.1:-:windows:*:*:*:*:*
cpe:2.3:a:apple:safari:3.2.2:-:windows:*:*:*:*:*

History

21 Nov 2024, 01:03

Type Values Removed Values Added
References () http://lists.apple.com/archives/security-announce/2009/jun/msg00002.html - Patch, Vendor Advisory () http://lists.apple.com/archives/security-announce/2009/jun/msg00002.html - Patch, Vendor Advisory
References () http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html - () http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html -
References () http://osvdb.org/55014 - () http://osvdb.org/55014 -
References () http://secunia.com/advisories/35379 - Vendor Advisory () http://secunia.com/advisories/35379 - Vendor Advisory
References () http://secunia.com/advisories/37746 - () http://secunia.com/advisories/37746 -
References () http://secunia.com/advisories/43068 - () http://secunia.com/advisories/43068 -
References () http://support.apple.com/kb/HT3613 - Patch, Vendor Advisory () http://support.apple.com/kb/HT3613 - Patch, Vendor Advisory
References () http://www.debian.org/security/2009/dsa-1950 - () http://www.debian.org/security/2009/dsa-1950 -
References () http://www.securityfocus.com/bid/35260 - Exploit, Patch () http://www.securityfocus.com/bid/35260 - Exploit, Patch
References () http://www.securityfocus.com/bid/35340 - () http://www.securityfocus.com/bid/35340 -
References () http://www.vupen.com/english/advisories/2009/1522 - Patch, Vendor Advisory () http://www.vupen.com/english/advisories/2009/1522 - Patch, Vendor Advisory
References () http://www.vupen.com/english/advisories/2011/0212 - () http://www.vupen.com/english/advisories/2011/0212 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/51263 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/51263 -

Information

Published : 2009-06-10 18:00

Updated : 2024-11-21 01:03


NVD link : CVE-2009-1710

Mitre link : CVE-2009-1710

CVE.ORG link : CVE-2009-1710


JSON object : View

Products Affected

apple

  • safari