Lucene search

K
ubuntucveUbuntu.comUB:CVE-2010-2454
HistoryJun 25, 2010 - 12:00 a.m.

CVE-2010-2454

2010-06-2500:00:00
ubuntu.com
ubuntu.com
12

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.202

Percentile

96.4%

Apple Safari does not properly manage the address bar between the request
to open a URL and the retrieval of the new document’s content, which might
allow remote attackers to conduct spoofing attacks via a crafted HTML
document, a related issue to CVE-2010-1206.

Bugs

Notes

Author Note
jdstrand webkit is a fork of khtml from kdelibs. kdelibs5 is farther from it, while qt4-x11 attempts to unify khtml and webkit.
mdeslaur webkitkde is a wrapper around qt4-x11’s webkit. safari-specific

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.202

Percentile

96.4%