OSVDB ID: 76337

Title: WebKit Auto-Focus Handling Bad Cast Memory Corruption

Info

Disclosure

May 20, 2011

Discovery

Unknown

Dates

Exploit

Unknown

Solution

May 20, 2011

Description

WebKit contains a typecasting flaw that is triggered when an auto-focus triggers an attach. With a specially crafted web page, a context-dependent attacker can corrupt memory to cause a denial of service or potentially execute arbitrary code.

Classification

Location: Context Dependent
Attack Type: Input Manipulation
Impact: Loss of Integrity
Solution: Upgrade
Exploit: PoC Public
Disclosure: Vendor Verified, Coordinated Disclosure
OSVDB: Web Related

Solution

It has been reported that this issue has been fixed. Upgrade to version 1.6.0, or higher, to address this vulnerability.

Products

Unknown or Incomplete

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/76337