NA
CVSSv3

CVE-2010-0042

CVSSv4: NA | CVSSv3: NA | CVSSv2: 4.3 | VMScore: 530 | EPSS: 0.00957 | KEV: Not Included
Published: 15/03/2010 Updated: 21/11/2024

Vulnerability Summary

ImageIO in Apple Safari prior to 4.0.5 and iTunes prior to 9.1 on Windows does not ensure that memory access is associated with initialized memory, which allows remote malicious users to obtain potentially sensitive information from process memory via a crafted TIFF image.

Vulnerable Product Search on Vulmon Subscribe to Product

apple safari

apple safari 4.0

apple safari 4.0.0b

apple safari 4.0.1

apple safari 4.0.2

apple safari 4.0.3

References

CWE-200https://nvd.nist.govhttps://www.first.org/epsshttp://lists.apple.com/archives/security-announce/2010//Mar/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2010//Mar/msg00003.htmlhttp://lists.apple.com/archives/security-announce/2010//Nov/msg00003.htmlhttp://lists.apple.com/archives/security-announce/2010/Jun/msg00003.htmlhttp://lists.apple.com/archives/security-announce/2010/Mar/msg00000.htmlhttp://secunia.com/advisories/39135http://secunia.com/advisories/42314http://support.apple.com/kb/HT4070http://support.apple.com/kb/HT4077http://support.apple.com/kb/HT4105http://support.apple.com/kb/HT4225http://support.apple.com/kb/HT4456http://www.securityfocus.com/bid/38671http://www.securityfocus.com/bid/38677http://www.securitytracker.com/id?1023706https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7561http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2010//Mar/msg00003.htmlhttp://lists.apple.com/archives/security-announce/2010//Nov/msg00003.htmlhttp://lists.apple.com/archives/security-announce/2010/Jun/msg00003.htmlhttp://lists.apple.com/archives/security-announce/2010/Mar/msg00000.htmlhttp://secunia.com/advisories/39135http://secunia.com/advisories/42314http://support.apple.com/kb/HT4070http://support.apple.com/kb/HT4077http://support.apple.com/kb/HT4105http://support.apple.com/kb/HT4225http://support.apple.com/kb/HT4456http://www.securityfocus.com/bid/38671http://www.securityfocus.com/bid/38677http://www.securitytracker.com/id?1023706https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7561