Apple Safari Denial of Service Remote Attackers Vulnerability
6 Nov. 2012
Summary
Apple Safari allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving JavaScript arrays.
Description
Two vulnerabilities have been reported in Apple Safari, which can be exploited by malicious people to compromise a user's system.
1) A race condition error exists within the webkit component when handling JavaScript arrays and can be exploited to execute arbitrary code.
2) A use-after-free error exists in the handling of SVG images.For more information see vulnerability #1 in:SA50954