CVE Vulnerabilities

CVE-2009-1725

Published: Jul 09, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

WebKit in Apple Safari before 4.0.2, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms; KHTML in kdelibs in KDE; QtWebKit (aka Qt toolkit); and possibly other products do not properly handle numeric character references, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.

Affected Software

NameVendorStart VersionEnd Version
SafariApple*4.0.1 (including)
SafariApple2.0 (including)2.0 (including)
SafariApple2.0.0 (including)2.0.0 (including)
SafariApple2.0.1 (including)2.0.1 (including)
SafariApple2.0.2 (including)2.0.2 (including)
SafariApple2.0.3 (including)2.0.3 (including)
SafariApple2.0.3-417.8 (including)2.0.3-417.8 (including)
SafariApple2.0.3-417.9 (including)2.0.3-417.9 (including)
SafariApple2.0.3-417.9.2 (including)2.0.3-417.9.2 (including)
SafariApple2.0.3-417.9.3 (including)2.0.3-417.9.3 (including)
SafariApple2.0.4 (including)2.0.4 (including)
SafariApple3.0 (including)3.0 (including)
SafariApple3.0.0 (including)3.0.0 (including)
SafariApple3.0.0b (including)3.0.0b (including)
SafariApple3.0.1 (including)3.0.1 (including)
SafariApple3.0.1-beta (including)3.0.1-beta (including)
SafariApple3.0.1b (including)3.0.1b (including)
SafariApple3.0.2 (including)3.0.2 (including)
SafariApple3.0.2b (including)3.0.2b (including)
SafariApple3.0.3 (including)3.0.3 (including)
SafariApple3.0.3b (including)3.0.3b (including)
SafariApple3.0.4 (including)3.0.4 (including)
SafariApple3.0.4b (including)3.0.4b (including)
SafariApple3.1.0 (including)3.1.0 (including)
SafariApple3.1.0b (including)3.1.0b (including)
SafariApple3.1.1 (including)3.1.1 (including)
SafariApple3.1.2 (including)3.1.2 (including)
SafariApple3.2.0 (including)3.2.0 (including)
SafariApple3.2.1 (including)3.2.1 (including)
SafariApple3.2.2 (including)3.2.2 (including)
SafariApple4.0 (including)4.0 (including)
SafariApple4.0.0b (including)4.0.0b (including)
Kde4libsUbuntudevel*
Kde4libsUbuntuhardy*
Kde4libsUbuntuintrepid*
Kde4libsUbuntujaunty*
Kde4libsUbuntukarmic*
Kde4libsUbuntulucid*
Kde4libsUbuntumaverick*
Kde4libsUbuntunatty*
KdelibsUbuntudapper*
KdelibsUbuntudevel*
KdelibsUbuntuhardy*
KdelibsUbuntuintrepid*
KdelibsUbuntujaunty*
KdelibsUbuntukarmic*
KdelibsUbuntulucid*
KdelibsUbuntumaverick*
KdelibsUbuntunatty*
Qt4-x11Ubuntuintrepid*
Qt4-x11Ubuntujaunty*
Qt4-x11Ubuntukarmic*
WebkitUbuntuhardy*
WebkitUbuntuintrepid*
WebkitUbuntujaunty*

References