CVE Database
/

CVE-2009-1725

Back to search

CVE-2009-1725

Published: Jul 9, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

WebKit in Apple Safari before 4.0.2, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms; KHTML in kdelibs in KDE; QtWebKit (aka Qt toolkit); and possibly other products do not properly handle numeric character references, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.

VendorProductVersions

n/a

n/a

affected
n/a

References

43068
third-party-advisory
x_refsource_SECUNIA
FEDORA-2009-8039
vendor-advisory
x_refsource_FEDORA
MDVSA-2009:330
vendor-advisory
x_refsource_MANDRIVA
ADV-2011-0212
vdb-entry
x_refsource_VUPEN
APPLE-SA-2009-07-08-1
vendor-advisory
x_refsource_APPLE
FEDORA-2009-8046
vendor-advisory
x_refsource_FEDORA
35607
vdb-entry
x_refsource_BID
ADV-2009-1827
vdb-entry
x_refsource_VUPEN
37746
third-party-advisory
x_refsource_SECUNIA
55739
vdb-entry
x_refsource_OSVDB
36790
third-party-advisory
x_refsource_SECUNIA
36347
third-party-advisory
x_refsource_SECUNIA
DSA-1950
vendor-advisory
x_refsource_DEBIAN
SUSE-SR:2011:002
vendor-advisory
x_refsource_SUSE
36062
third-party-advisory
x_refsource_SECUNIA
USN-857-1
vendor-advisory
x_refsource_UBUNTU
36057
third-party-advisory
x_refsource_SECUNIA
FEDORA-2009-8802
vendor-advisory
x_refsource_FEDORA
1022526
vdb-entry
x_refsource_SECTRACK
oval:org.mitre.oval:def:5777
vdb-entry
signature
x_refsource_OVAL
FEDORA-2009-8049
vendor-advisory
x_refsource_FEDORA
USN-836-1
vendor-advisory
x_refsource_UBUNTU
FEDORA-2009-8800
vendor-advisory
x_refsource_FEDORA
APPLE-SA-2009-09-09-1
vendor-advisory
x_refsource_APPLE
36677
third-party-advisory
x_refsource_SECUNIA
35758
third-party-advisory
x_refsource_SECUNIA
FEDORA-2009-8020
vendor-advisory
x_refsource_FEDORA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now