This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:apple:safari:3.0.3::mac
Detail
VendorAppleFirst view 2009-06-10
ProductSafariLast view 2009-09-29
Version3.0.3TypeApplication
Editionmac 
Language 
Update 
 
CPE Productcpe:/a:apple:safari

Activity : Overall

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentication
7.5 2009-09-29 CVE-2009-3455 Network Low None Requ...
7.1 2009-06-10 CVE-2009-1718 Network Medium None Requ...
4.3 2009-06-10 CVE-2009-1715 Network Medium None Requ...
7.1 2009-06-10 CVE-2009-1713 Network Medium None Requ...
9.3 2009-06-10 CVE-2009-1712 Network Medium None Requ...
Hide | Show 13 More...
 DateAlertAccess VectorAccess ComplexityAuthentication
9.3 2009-06-10 CVE-2009-1711 Network Medium None Requ...
9.3 2009-06-10 CVE-2009-1704 Network Medium None Requ...
7.1 2009-06-10 CVE-2009-1703 Network Medium None Requ...
4.3 2009-06-10 CVE-2009-1697 Network Medium None Requ...
5 2009-06-10 CVE-2009-1696 Network Low None Requ...
4.3 2009-06-10 CVE-2009-1695 Network Medium None Requ...
5.8 2009-06-10 CVE-2009-1694 Network Medium None Requ...
9.3 2009-06-10 CVE-2009-1690 Network Medium None Requ...
4.3 2009-06-10 CVE-2009-1688 Network Medium None Requ...
9.3 2009-06-10 CVE-2009-1687 Network Medium None Requ...
4.3 2009-06-10 CVE-2009-1685 Network Medium None Requ...
4.3 2009-06-10 CVE-2009-1684 Network Medium None Requ...
4.3 2009-06-10 CVE-2009-1681 Network Medium None Requ...

CWE : Common Weakness Enumeration

%idName
31% (5)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
18% (3)CWE-399Resource Management Errors
18% (3)CWE-200Information Exposure
12% (2)CWE-310Cryptographic Issues
12% (2)CWE-94Failure to Control Generation of Code ('Code Injection')
Hide | Show 1 More...
%idName
6% (1)CWE-20Improper Input Validation

Oval Markup Language : Definitions

OvalIDName
oval:org.mitre.oval:def:8086DSA-1867 kdelibs -- several vulnerabilities
oval:org.mitre.oval:def:7524DSA-1868 kde4libs -- several vulnerabilities
oval:org.mitre.oval:def:13290DSA-1867-1 kdelibs -- several vulnerabilities
oval:org.mitre.oval:def:13176DSA-1868-1 kde4libs -- several vulnerabilities
oval:org.mitre.oval:def:10260The JavaScript garbage collector in WebKit in Apple Safari before 4.0, iPhone...
Hide | Show 3 More...
idName
oval:org.mitre.oval:def:11009Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.0, i...
oval:org.mitre.oval:def:13946USN-857-1 -- qt4-x11 vulnerabilities
oval:org.mitre.oval:def:13113USN-836-1 -- webkit vulnerabilities

Open Source Vulnerability Database (OSVDB)

idDescription
58481Apple Safari X.509 Certificate Authority (CA) Common Name Null Byte Handling ...
55418KDE Konqueror WebKit JavaScript Garbage Collector Allocation Failure NULL Poi...
55416KDE Konqueror WebKit head HTML Tag Handling DoS
55414KDE Konqueror WebKit DOM Error Event Recursion Handling Memory Corruption
55043Google Chrome WebKit Unspecified Drag and Drop Information Disclosure
Hide | Show 18 More...
idDescription
55042Google Chrome WebKit HTML Error Handling Use After Free Memory Corruption
55027Apple Safari WebKit JavaScript Application RNG Prediction Weakness
55022Apple Safari WebKit Arbitrary Local Java Applet Access
55015Apple Safari WebKit Attr DOM Object Handling Arbitrary Code Execution
55010Apple Safari CFNetwork Image File Content Type Handling XSS
55009Apple Safari WebKit Audio / Video HTML Element Handling Information Disclosure
55005Apple Safari WebKit Canvas Redirect Cross-site Image Disclosure
54996Apple Safari Web Inspector Page Inspection XSS
54994Apple Safari WebKit Drag Event Handling Information Disclosure
54992Apple Safari WebKit XMLHttpRequest Header Handling CRLF Injection
54991Apple Safari WebKit Page Transition Frame Content Access XSS
54990Apple Safari WebKit DOM Error Event Recursion Handling Memory Corruption
54987Apple Safari WebKit JavaScript Context Splitting Event Handler Subsequent Fra...
54986Apple Safari WebKit Script Security Context Association Implementation Failur...
54985Apple Safari WebKit JavaScript Garbage Collector Allocation Failure NULL Poin...
54983Apple Safari WebKit JavaScript Contexts Separation XSS
54981Apple Safari WebKit Same-origin Policy Bypass Subframe Positioning Clickjacking
54975Apple Safari WebKit XSLT document() Function Information Disclosure

OpenVAS Exploits

idDescription
2011-08-09Name : CentOS Update for kdelibs CESA-2009:1127 centos5 i386
File : nvt/gb_CESA-2009_1127_kdelibs_centos5_i386.nasl
2010-05-28Name : Fedora Update for kdelibs FEDORA-2010-8547
File : nvt/gb_fedora_2010_8547_kdelibs_fc11.nasl
2010-04-19Name : Fedora Update for kdelibs FEDORA-2010-6077
File : nvt/gb_fedora_2010_6077_kdelibs_fc11.nasl
2010-01-29Name : Mandriva Update for kdelibs4 MDVSA-2010:027 (kdelibs4)
File : nvt/gb_mandriva_MDVSA_2010_027.nasl
2009-12-14Name : Mandriva Security Advisory MDVSA-2009:330 (kdelibs)
File : nvt/mdksa_2009_330.nasl
Hide | Show 16 More...
idDescription
2009-11-11Name : Ubuntu USN-857-1 (qt4-x11)
File : nvt/ubuntu_857_1.nasl
2009-09-28Name : Ubuntu USN-836-1 (webkit)
File : nvt/ubuntu_836_1.nasl
2009-09-15Name : Fedora Core 11 FEDORA-2009-9391 (kdelibs3)
File : nvt/fcore_2009_9391.nasl
2009-09-15Name : Fedora Core 10 FEDORA-2009-9400 (kdelibs3)
File : nvt/fcore_2009_9400.nasl
2009-09-02Name : Debian Security Advisory DSA 1867-1 (kdelibs)
File : nvt/deb_1867_1.nasl
2009-09-02Name : Debian Security Advisory DSA 1868-1 (kde4libs)
File : nvt/deb_1868_1.nasl
2009-09-02Name : Ubuntu USN-822-1 (kdelibs)
File : nvt/ubuntu_822_1.nasl
2009-07-29Name : Fedora Core 10 FEDORA-2009-8020 (kdelibs3)
File : nvt/fcore_2009_8020.nasl
2009-07-29Name : Fedora Core 11 FEDORA-2009-8039 (kdelibs)
File : nvt/fcore_2009_8039.nasl
2009-07-29Name : Fedora Core 11 FEDORA-2009-8046 (kdelibs3)
File : nvt/fcore_2009_8046.nasl
2009-07-29Name : Fedora Core 10 FEDORA-2009-8049 (kdelibs)
File : nvt/fcore_2009_8049.nasl
2009-06-30Name : RedHat Security Advisory RHSA-2009:1127
File : nvt/RHSA_2009_1127.nasl
2009-06-30Name : CentOS Security Advisory CESA-2009:1127 (kdelibs)
File : nvt/ovcesa2009_1127.nasl
2009-06-16Name : Apple Safari Multiple Vulnerabilities June-09 (Win) - I
File : nvt/gb_apple_safari_mult_vuln_jun09_1.nasl
2009-06-16Name : Apple Safari Multiple Vulnerabilities June-09 (Win) - II
File : nvt/gb_apple_safari_mult_vuln_jun09_2.nasl
2009-06-15Name : Ubuntu USN-785-1 (ipsec-tools)
File : nvt/ubuntu_785_1.nasl

Nessus® Vulnerability Scanner

idDescription
2014-06-13Name : The remote openSUSE host is missing a security update.
File : suse_11_3_libwebkit-110104.nasl - Type : ACT_GATHER_INFO
2013-07-12Name : The remote Oracle Linux host is missing one or more security updates.
File : oraclelinux_ELSA-2009-1127.nasl - Type : ACT_GATHER_INFO
2012-08-01Name : The remote Scientific Linux host is missing one or more security updates.
File : sl_20090625_kdelibs_on_SL4_x.nasl - Type : ACT_GATHER_INFO
2011-05-05Name : The remote openSUSE host is missing a security update.
File : suse_11_2_libwebkit-110111.nasl - Type : ACT_GATHER_INFO
2011-05-05Name : The remote openSUSE host is missing a security update.
File : suse_11_1_kdelibs3-101104.nasl - Type : ACT_GATHER_INFO
Hide | Show 18 More...
idDescription
2010-07-30Name : The remote Mandriva Linux host is missing one or more security updates.
File : mandriva_MDVSA-2010-027.nasl - Type : ACT_GATHER_INFO
2010-02-24Name : The remote Debian host is missing a security-related update.
File : debian_DSA-1950.nasl - Type : ACT_GATHER_INFO
2010-02-24Name : The remote Debian host is missing a security-related update.
File : debian_DSA-1988.nasl - Type : ACT_GATHER_INFO
2010-02-24Name : The remote Debian host is missing a security-related update.
File : debian_DSA-1867.nasl - Type : ACT_GATHER_INFO
2010-02-24Name : The remote Debian host is missing a security-related update.
File : debian_DSA-1868.nasl - Type : ACT_GATHER_INFO
2010-01-06Name : The remote CentOS host is missing one or more security updates.
File : centos_RHSA-2009-1127.nasl - Type : ACT_GATHER_INFO
2009-12-30Name : The remote Mandriva Linux host is missing one or more security updates.
File : mandriva_MDVSA-2009-346.nasl - Type : ACT_GATHER_INFO
2009-11-11Name : The remote Ubuntu host is missing one or more security-related patches.
File : ubuntu_USN-857-1.nasl - Type : ACT_GATHER_INFO
2009-09-24Name : The remote Ubuntu host is missing one or more security-related patches.
File : ubuntu_USN-836-1.nasl - Type : ACT_GATHER_INFO
2009-08-25Name : The remote Ubuntu host is missing one or more security-related patches.
File : ubuntu_USN-822-1.nasl - Type : ACT_GATHER_INFO
2009-07-29Name : The remote Fedora host is missing a security update.
File : fedora_2009-8020.nasl - Type : ACT_GATHER_INFO
2009-07-29Name : The remote Fedora host is missing a security update.
File : fedora_2009-8039.nasl - Type : ACT_GATHER_INFO
2009-07-29Name : The remote Fedora host is missing a security update.
File : fedora_2009-8046.nasl - Type : ACT_GATHER_INFO
2009-07-29Name : The remote Fedora host is missing a security update.
File : fedora_2009-8049.nasl - Type : ACT_GATHER_INFO
2009-06-26Name : The remote Red Hat host is missing one or more security updates.
File : redhat-RHSA-2009-1127.nasl - Type : ACT_GATHER_INFO
2009-06-11Name : The remote host contains a web browser that is affected by multiple vulnerabi...
File : google_chrome_2_0_172_31.nasl - Type : ACT_GATHER_INFO
2009-06-09Name : The remote host contains a web browser that is affected by several vulnerabil...
File : safari_4.0.nasl - Type : ACT_GATHER_INFO
2009-06-09Name : The remote host contains a web browser that is affected by several vulnerabil...
File : macosx_Safari4_0.nasl - Type : ACT_GATHER_INFO