Revision Date: | 2014-04-07 | Version: | 42 |
Title: | WebKit before r52784, as used in Google Chrome before 4.0.249.78 and Apple Safari before 4.0.5, permits cross-origin loading of CSS stylesheets even when the stylesheet download has an incorrect MIME type and the stylesheet document is malformed, which allows remote attackers to obtain sensitive information via a crafted document. |
Description: | WebKit before r52784, as used in Google Chrome before 4.0.249.78 and Apple Safari before 4.0.5, permits cross-origin loading of CSS stylesheets even when the stylesheet download has an incorrect MIME type and the stylesheet document is malformed, which allows remote attackers to obtain sensitive information via a crafted document. |
Family: | windows | Class: | vulnerability |
Status: | ACCEPTED | Reference(s): | CVE-2010-0651
|
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP
| Product(s): | Apple Safari Google Chrome
|
Definition Synopsis |
Determine if the version of Apple Safari is less than or equal to 4.0.4 Apple Safari is installed
AND Determine if the version of Apple Safari is less than or equal to 4.0.4
OR Determine if the version of Google Chrome is less than or equal to 3.0.195.33 and is greater than or equal to 3.0.182.2
Google Chrome is installed
AND Determine if the version of Google Chrome is less than or equal to 3.0.195.33
AND Determine if the version of Google Chrome is greater than or equal to 3.0.182.2
OR Determine if the version of Google Chrome is less than or equal to 0.4.154.33 and is greater than or equal to 0.2.149.27
Google Chrome is installed
AND Determine if the version of Google Chrome is less than or equal to 0.4.154.33
AND Determine if the version of Google Chrome is greater than or equal to 0.2.149.27
OR Determine if the version of Google Chrome is less than or equal to 1.0.154.65 and is greater than or equal to 1.0.154.36
Google Chrome is installed
AND Determine if the version of Google Chrome is less than or equal to 1.0.154.65
AND Determine if the version of Google Chrome is greater than or equal to 1.0.154.36
OR Determine if the version of Google Chrome is less than or equal to 2.0.172 and is greater than or equal to 2.0.156.1
Google Chrome is installed
AND Determine if the version of Google Chrome is less than or equal to 2.0.172
AND Determine if the version of Google Chrome is greater than or equal to 2.0.156.1
OR Determine if the version of Google Chrome is less than or equal to 4.0.249.78 and is greater than or equal to 4.0.244.0
Google Chrome is installed
AND Determine if the version of Google Chrome is less than or equal to 4.0.249.78
AND Determine if the version of Google Chrome is greater than or equal to 4.0.244.0
|