CVE-2009-1713
EUVD-2009-170810.06.2009, 18:00
The XSLT functionality in WebKit in Apple Safari before 4.0 does not properly implement the document function, which allows remote attackers to read (1) arbitrary local files and (2) files from different security zones via unspecified vectors.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apple | safari | 𝑥 ≤ 4.0_beta |
| apple | safari | 0.8 |
| apple | safari | 0.9 |
| apple | safari | 1.0 |
| apple | safari | 1.0.3 |
| apple | safari | 1.1 |
| apple | safari | 1.2 |
| apple | safari | 1.3 |
| apple | safari | 1.3.1 |
| apple | safari | 1.3.2 |
| apple | safari | 2.0 |
| apple | safari | 2.0.2 |
| apple | safari | 2.0.4 |
| apple | safari | 3.0 |
| apple | safari | 3.0.2 |
| apple | safari | 3.0.3 |
| apple | safari | 3.0.4 |
| apple | safari | 3.1 |
| apple | safari | 3.1.1 |
| apple | safari | 3.1.2 |
| apple | safari | 3.2.1 |
| apple | safari | 3.2.3 |
| apple | safari | 𝑥 ≤ 3.2.3 |
| apple | safari | 3.0 |
| apple | safari | 3.0.1 |
| apple | safari | 3.0.2 |
| apple | safari | 3.0.3 |
| apple | safari | 3.0.4 |
| apple | safari | 3.1 |
| apple | safari | 3.1.1 |
| apple | safari | 3.1.2 |
| apple | safari | 3.2 |
| apple | safari | 3.2.1 |
| apple | safari | 3.2.2 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| qt4-x11 |
| ||||||||||||||||
| webkit |
|
Common Weakness Enumeration
References