漏洞信息详情
CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Safari WebKit 垃圾收集器内存破坏漏洞
- CNNVD编号:CNNVD-200906-172
- 危害等级: 中危
- CVE编号: CVE-2009-1687
- 漏洞类型: 资源管理错误
- 发布时间: 2009-01-14
- 威胁类型: 远程
- 更新时间: 2009-06-23
- 厂 商: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple
- 漏洞来源: Sergio Alvarez Bil...
漏洞简介
Safari是苹果家族机器操作系统中默认捆绑的WEB浏览器 。 CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Safari \"WebKit\"的Javascript垃圾收集器中存在内存破坏。如果分配失败,可能出现对空指针偏移的写操作,导致应用程序意外终止或执行任意代码。
漏洞公告
目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接: http://www.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/safari/download/
参考网址
来源: VUPEN 名称: ADV-2009-1522 链接:http://www.vupen.com/english/advisories/2009/1522 来源: SECTRACK 名称: 1022345 链接:http://securitytracker.com/id?1022345 来源: FEDORA 名称: FEDORA-2009-8020 链接:https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01200.HTML 来源: FEDORA 名称: FEDORA-2009-8046 链接:https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01199.HTML 来源: FEDORA 名称: FEDORA-2009-8049 链接:https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01196.HTML 来源: FEDORA 名称: FEDORA-2009-8039 链接:https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01177.HTML 来源: VUPEN 名称: ADV-2009-1621 链接:http://www.vupen.com/english/advisories/2009/1621 来源: UBUNTU 名称: USN-822-1 链接:http://www.ubuntu.com/usn/USN-822-1 来源: BID 名称: 35309 链接:http://www.securityfocus.com/bid/35309 来源: BID 名称: 35260 链接:http://www.securityfocus.com/bid/35260 来源: support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com 链接:http://support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/kb/HT3639 来源: support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com 链接:http://support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/kb/HT3613 来源: SECUNIA 名称: 36062 链接:http://secunia.com/advisories/36062 来源: SECUNIA 名称: 36057 链接:http://secunia.com/advisories/36057 来源: SECUNIA 名称: 35379 链接:http://secunia.com/advisories/35379 来源: OSVDB 名称: 54985 链接:http://osvdb.org/54985 来源: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple 名称: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple-SA-2009-06-17-1 链接:http://lists.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/archives/security-announce/2009/Jun/msg00005.HTML 来源: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple 名称: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple-SA-2009-06-08-1 链接:http://lists.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/archives/security-announce/2009/jun/msg00002.HTML
受影响实体
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Safari:4.0_beta:Mac
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Safari:3.2.3:Mac
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Safari:3.2.1:Mac
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Safari:2.0.4:Mac
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Safari:2.0.2:Mac
补丁
暂无
![weinxin](http://zone.ci/zone_ci_images/zone.ci.png)
评论