Oval Definition:oval:org.opensuse.security:def:20092816
Revision Date:2015-11-16Version:1
Title:CVE-2009-2816
Description:
The implementation of Cross-Origin Resource Sharing (CORS) in WebKit, as used in Apple Safari before 4.0.4 and Google Chrome before 3.0.195.33, includes certain custom HTTP headers in the OPTIONS request during cross-origin operations with preflight, which makes it easier for remote attackers to conduct cross-site request forgery (CSRF) attacks via a crafted web page.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2009-2816
Platform(s):openSUSE 11.2
openSUSE 11.3
Product(s):
Definition Synopsis
  • Release Information
  • suse112 is installed
  • AND
  • libwebkit-1_0-2 less than 1.2.6-0.5.1
  • OR libwebkit-devel less than 1.2.6-0.5.1
  • OR libwebkit-lang less than 1.2.6-0.5.1
  • OR webkit-jsc less than 1.2.6-0.5.1
  • OR Package Information
  • suse113 is installed
  • AND
  • libwebkit-1_0-2-32bit less than 1.2.6-0.2.1
  • OR libwebkit-1_0-2 less than 1.2.6-0.2.1
  • OR libwebkit-devel less than 1.2.6-0.2.1
  • OR libwebkit-lang less than 1.2.6-0.2.1
  • OR webkit-jsc less than 1.2.6-0.2.1
  • BACK