Oval Definition:oval:org.mitre.oval:def:24460
Revision Date:2014-05-12Version:6
Title:JavaScript vulnerability in Apple Safari 4 does not properly restrict the set of values contained in the object returned by the getComputedStyle method
Description:The JavaScript implementation in Apple Safari 4 does not properly restrict the set of values contained in the object returned by the getComputedStyle method, which allows remote attackers to obtain sensitive information about visited web pages by calling this method, a different vulnerability than CVE-2010-2264. NOTE: this may overlap CVE-2010-5073.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2010-5070
Platform(s):Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows 8.1
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Apple Safari
Definition Synopsis
  • Apple Safari is installed
  • AND Apple Safari version is less than or equals to 5.33.19.4
  • AND Apple Safari version is greater than or equals to 5.26.11.2
  • BACK