Stack consumption vulnerability in the WebCore::CSSSelector function in WebKit, as used in Apple Safari 4.0.4, Apple Safari on iPhone OS and iPhone OS for iPod touch, and Google Chrome 4.0.249, allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a STYLE element composed of a large number of *> sequences.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apple safari 4.0.4 |
||
google chrome 4.0.249.0 |
||
apple safari |