CVE-2010-1766
22.07.2010, 05:42
Off-by-one error in the WebSocketHandshake::readServerHandshake function in websockets/WebSocketHandshake.cpp in WebCore in WebKit before r56380, as used in Qt and other products, allows remote websockets servers to cause a denial of service (memory corruption) or possibly have unspecified other impact via an upgrade header that is long and invalid.Enginsight
| Vendor | Product | Version |
|---|---|---|
| digia | qt | 𝑥 ≤ 4.6.2 |
| webkit | webkit | 𝑥 ≤ r56379 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| chromium-browser |
| ||||||||||||||||
| qt4-x11 |
| ||||||||||||||||
| webkit |
|
Common Weakness Enumeration
References