WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3 and Google Chrome before 6.0.472.62, does not properly perform a cast of an unspecified variable, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an SVG element in a non-SVG document.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: apple
Published: 2010-10-04T20:00:00
Updated: 2017-09-18T12:57:01
Reserved: 2010-05-06T00:00:00
Link: CVE-2010-1822
JSON object: View
NVD Information
Status : Analyzed
Published: 2010-10-04T21:00:03.923
Modified: 2020-08-03T18:32:05.427
Link: CVE-2010-1822
JSON object: View
Redhat Information
No data.
CWE