Security Advisory

CVE-2010-1939

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2010-05-13 22:00:00
Last updated 2024-08-07 02:17:12
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Use-after-free vulnerability in Apple Safari 4.0.5 on Windows allows remote attackers to execute arbitrary code by using window.open to create a popup window for a crafted HTML document, and then calling the parent window's close method, which triggers improper handling of a deleted window object.