ImageIO in Apple Safari prior to 4.0.5 and iTunes prior to 9.1 on Windows does not ensure that memory access is associated with initialized memory, which allows remote malicious users to obtain potentially sensitive information from process memory via a crafted TIFF image.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apple safari |
||
apple safari 4.0 |
||
apple safari 4.0.0b |
||
apple safari 4.0.1 |
||
apple safari 4.0.2 |
||
apple safari 4.0.3 |