2010-06-11

Apple Safari

ソフト名:Apple Safari 4.1/5.0
回避策:アップデートにて対応
脆弱性:ディレクトリトラバーサル, リモートコード実行, アプリケーションのクラッシュ, 機密情報の奪取, XSS, 認証資格情報の奪取,セキュリティの強度不足, メモリ劣化エラー, マンインミドル攻撃, セキュリティ制限の回避, 区域外メモリアクセス, 閲覧履歴の奪取
ソース:
http://support.apple.com/kb/HT4196
http://www.securityfocus.com/bid/35954
http://www.securityfocus.com/bid/40644
http://www.securityfocus.com/bid/40645
http://www.securityfocus.com/bid/40646
http://www.securityfocus.com/bid/40647
http://www.securityfocus.com/bid/40649
http://www.securityfocus.com/bid/40650
http://www.securityfocus.com/bid/40652
http://www.securityfocus.com/bid/40653
http://www.securityfocus.com/bid/40654
http://www.securityfocus.com/bid/40655
http://www.securityfocus.com/bid/40656
http://www.securityfocus.com/bid/40657
http://www.securityfocus.com/bid/40658
http://www.securityfocus.com/bid/40659
http://www.securityfocus.com/bid/40661
http://www.securityfocus.com/bid/40662
http://www.securityfocus.com/bid/40663
http://www.securityfocus.com/bid/40665
http://www.securityfocus.com/bid/40666
http://www.securityfocus.com/bid/40667
http://www.securityfocus.com/bid/40668
http://www.securityfocus.com/bid/40670
http://www.securityfocus.com/bid/40671
http://www.securityfocus.com/bid/40672
http://www.securityfocus.com/bid/40675
http://www.securityfocus.com/bid/40697
http://www.securityfocus.com/bid/40698
http://www.securityfocus.com/bid/40705
http://www.securityfocus.com/bid/40707
http://www.securityfocus.com/bid/40710
http://www.securityfocus.com/bid/40714
http://www.securityfocus.com/bid/40717
http://www.securityfocus.com/bid/40726
http://www.securityfocus.com/bid/40727
http://www.securityfocus.com/bid/40732
http://www.securityfocus.com/bid/40733
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0544
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1391
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1392
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1393
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1394
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1395
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1396
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1397
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1398
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1399
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1400
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1401
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1402
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1403
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1404
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1405
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1406
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1408
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1409
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1410
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1412
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1413
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1414
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1415
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1416
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1417
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1418
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1419
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1421
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1422
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1749
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1758
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1759
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1761
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1762
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1764
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1770
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1771
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1774
http://secunia.com/advisories/36096
http://securitytracker.com/alerts/2009/Aug/1022674.html
http://www.vupen.com/english/advisories/2009/2172
CVE:CVE-2010-0544, CVE-2010-1391, CVE-2010-1392, CVE-2010-1393, CVE-2010-1394, CVE-2010-1395, CVE-2010-1396, CVE-2010-1397, CVE-2010-1398, CVE-2010-1399, CVE-2010-1400, CVE-2010-1401, CVE-2010-1402, CVE-2010-1403, CVE-2010-1404, CVE-2010-1405, CVE-2010-1406, CVE-2010-1408, CVE-2010-1409, CVE-2010-1410, CVE-2010-1412, CVE-2010-1413, CVE-2010-1414, CVE-2010-1415, CVE-2010-1416, CVE-2010-1417, CVE-2010-1418, CVE-2010-1419, CVE-2010-1421, CVE-2010-1422, CVE-2010-1749, CVE-2010-1758, CVE-2010-1759, CVE-2010-1761, CVE-2010-1762, CVE-2010-1764, CVE-2010-1770, CVE-2010-1771, CVE-2010-1774
危険性:High Risk

0 件のコメント:

コメントを投稿