CERT mailing list archives

Current Activity - Apple Safari Vulnerability


From: Current Activity <us-cert () us-cert gov>
Date: Mon, 10 May 2010 12:37:55 -0400

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

US-CERT Current Activity

Apple Safari Vulnerability

Original release date: May 10, 2010 at 10:57 am
Last revised: May 10, 2010 at 10:57 am


US-CERT is aware of a vulnerability affecting Apple Safari. By
convincing a user to open a specially crafted web page, an attacker
may be able to execute arbitrary code. Exploit code for this
vulnerability is publicly available.

US-CERT encourages users and administrators to disable JavaScript as
detailed in the Securing Your Web Browser document until a fix is
provided by the vendor. Additional information regarding this
vulnerability can be found in the Vulnerability Notes Database.

US-CERT will provide additional information as it becomes available.

Relevant Url(s):
<http://www.kb.cert.org/vuls/id/943165>

<http://www.us-cert.gov/reading_room/securing_browser/>

====
This entry is available at
http://www.us-cert.gov/current/index.html#apple_safari_vulnerability

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)

iQEVAwUBS+g2Uz6pPKYJORa3AQLNuggAuzCHkdjfMkpkenSuT25AlJOJKAB10gJR
+aXnR6JWe838A8lu4JpcS/qDmE9pKDxabkSkWKe3KjiSznkfltUGLyV5F9Dno1hL
TjSLHK4mlsb0U0ObOLiCbNalt/C5pM56TqGBFRnKg8exW6gRp9Z/A2fdPvQkJfeq
zhhgOGK4q8wcyOW3SXE4ZYIzyy6/a7gDQEHk0pVL2i7Weawxl1y2I4V01W9dF3xU
v6f2P0PrnyaUcWeprnmoWMrPtlgpOfDs3IA6gzsJG3oY4HzlCezgCrhfvRw2lbPs
66w7cK+yaDaT3Jn9w2ah4GHRmyAZ5NIyrLQ6iEB6oKbeIvRfwKKyRw==
=PoRy
-----END PGP SIGNATURE-----


Current thread: