Security Advisory

CVE-2008-2317

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2008-07-14 18:00:00
Last updated 2024-08-07 08:58:02
Assigner mitre
State PUBLISHED

Description

WebCore in Apple Safari does not properly perform garbage collection of JavaScript document elements, which allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption and application crash) via a reference to the ownerNode property of a copied CSSStyleSheet object of a STYLE element, as originally demonstrated on Apple iPhone before 2.0 and iPod touch before 2.0, a different vulnerability than CVE-2008-1590.