CVE Vulnerabilities

CVE-2005-4504

Published: Dec 22, 2005 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu

The khtml::RenderTableSection::ensureRows function in KHTMLParser in Apple Mac OS X 10.4.3 and earlier, as used by Safari and TextEdit, allows remote attackers to cause a denial of service (memory consumption and application crash) via HTML files with a large ROWSPAN attribute in a TD tag.

Affected Software

Name Vendor Start Version End Version
Safari Apple 1.0 (including) 1.0 (including)
Safari Apple 1.1 (including) 1.1 (including)
Safari Apple 1.2 (including) 1.2 (including)
Safari Apple 1.2.1 (including) 1.2.1 (including)
Safari Apple 1.2.2 (including) 1.2.2 (including)
Safari Apple 1.2.3 (including) 1.2.3 (including)
Safari Apple 1.3 (including) 1.3 (including)
Safari Apple 2.0 (including) 2.0 (including)
Safari Apple 2.0.1 (including) 2.0.1 (including)
Safari Apple 2.0.2 (including) 2.0.2 (including)
Textedit Apple * 1.4 (including)

References