9.3
CVSSv2

CVE-2011-0222

Published: 21/07/2011 Updated: 21/10/2011
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 940
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

WebKit, as used in Apple Safari prior to 5.0.6, allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2011-07-20-1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple safari 2.0.1

apple safari 2.0.2

apple safari 1.2.0

apple safari 1.0.3

apple safari 1.0.2

apple safari 1.0.0

apple safari 2.0.3

apple safari 1.3

apple safari 3.0.3

apple safari 2.0

apple safari 1.1

apple safari 3.2.1

apple safari 4.1

apple safari 3.0.4b

apple safari 3.0.2

apple webkit

apple safari 1.2.3

apple safari 1.3.1

apple safari 1.3.2

apple safari 1.0.0b1

apple safari 1.0.0b2

apple safari 3.0.0b

apple safari 5.0.1

apple safari 3.0.3b

apple safari 1.0

apple safari 4.1.2

apple safari 3.1.1

apple safari 3.2.2

apple safari 3.1.0b

apple safari 3.1.2

apple safari 5.0.3

apple safari 1.3.0

apple safari 1.2.1

apple safari 1.2.5

apple safari 3.0

apple safari 3.0.1

apple safari 5.0

apple safari 3

apple safari 5.0.2

apple safari 4.1.1

apple safari 3.0.4

apple safari 3.0.2b

apple safari 1.2.4

apple safari 1.2.2

apple safari 1.1.1

apple safari 1.1.0

apple safari 1.0.1

apple safari 3.0.0

apple safari 2.0.4

apple safari 2

apple safari 1.2

apple safari 2.0.0

apple safari 3.0.1b

apple safari 3.2.0

apple safari 3.1.0

apple safari 5.0.4

apple safari

Exploits

Abysssec Public Advisory apple killed one of our 0day no point to keep it private anymore :( there is another version of exploit using POPup and thats more reliable but as you know safari block pop up by default so we found a cool way to bypass it and stand alone module this exploiting using ROP to bypass permanent DEP note : Chan ...
/* # Exploit Title: CVE-2011-0222 Safari SVG DOM processing PoC # Date: 2011-07-25 # Author: Nikita Tarakanov (CISS Research Team), Alex Bazhanyuk (CISS Research Team) # Software Link: wwwapplecom/au/safari/download/ # Version: prior to 506, 51 # Tested on: Win XP SP3, Win 7 SP1 # CVE : CVE-2011-0222 # Status : Patched */ PoC: ...