Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-1774
HistoryJul 21, 2011 - 12:00 a.m.

CVE-2011-1774

2011-07-2100:00:00
ubuntu.com
ubuntu.com
18

8.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:C/A:C

0.969 High

EPSS

Percentile

99.7%

WebKit in Apple Safari before 5.0.6 has improper libxslt security settings,
which allows remote attackers to create arbitrary files, and consequently
execute arbitrary code, via a crafted web site. NOTE: this may overlap
CVE-2011-1425.

Bugs

Notes

Author Note
kees likely CVE-2011-1425
jdstrand per Debian, CVE-2011-1774 is about webkitโ€™s interface to xmlsec code inspection showed only 10.04 LTS is affected

8.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:C/A:C

0.969 High

EPSS

Percentile

99.7%