ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows does not ensure that memory access is associated with initialized memory, which allows remote attackers to obtain potentially sensitive information from process memory via a crafted BMP image.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: apple
Published: 2010-03-12T20:00:00
Updated: 2017-09-18T12:57:01
Reserved: 2009-12-15T00:00:00
Link: CVE-2010-0041
JSON object: View
NVD Information
Status : Modified
Published: 2010-03-15T13:28:25.370
Modified: 2017-09-19T01:30:11.330
Link: CVE-2010-0041
JSON object: View
Redhat Information
No data.
CWE