CVE-2008-2307

Published: 23 June 2008

Unspecified vulnerability in WebKit in Apple Safari before 3.1.2, as distributed in Mac OS X before 10.5.4, and standalone for Windows and Mac OS X 10.4, allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via vectors involving JavaScript arrays that trigger memory corruption.

Priority

Medium

Status

Package Release Status
webkit
Launchpad, Ubuntu, Debian
Upstream Needs triage

Patches:
Upstream: http://trac.webkit.org/changeset/34204

Notes

AuthorNote
mdeslaur qt4-x11 doesn't look vulnerable (code is different)

References