CVE-2014-1305
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
02/04/2014
Last modified:
12/04/2025
Description
WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.
Impact
Base Score 2.0
6.80
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* | 6.1.2 (including) | |
cpe:2.3:a:apple:safari:6.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:6.0.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:6.0.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:6.0.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:6.0.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:6.0.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:6.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:6.1.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.0.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.0.2:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://archives.neohapsis.com/archives/bugtraq/2014-04/0009.html
- http://archives.neohapsis.com/archives/bugtraq/2014-04/0135.html
- http://archives.neohapsis.com/archives/bugtraq/2014-04/0136.html
- https://support.apple.com/kb/HT6537
- http://archives.neohapsis.com/archives/bugtraq/2014-04/0009.html
- http://archives.neohapsis.com/archives/bugtraq/2014-04/0135.html
- http://archives.neohapsis.com/archives/bugtraq/2014-04/0136.html
- https://support.apple.com/kb/HT6537