CVE Database
/

CVE-2011-0154

Back to search

CVE-2011-0154

Published: Mar 3, 2011

Modified: Aug 6, 2024

PUBLISHED

Description

WebKit, as used in Apple iTunes before 10.2 on Windows and Apple iOS, does not properly implement the .sort function for JavaScript arrays, which allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.

VendorProductVersions

n/a

n/a

affected
n/a

References

APPLE-SA-2011-03-02-1
vendor-advisory
x_refsource_APPLE
APPLE-SA-2011-03-09-1
vendor-advisory
x_refsource_APPLE
APPLE-SA-2011-03-09-2
vendor-advisory
x_refsource_APPLE
oval:org.mitre.oval:def:17308
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now