Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2010-1807

WebKit in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2; Android before 2.2; and webkitgtk before 1.2.6; does not properly validate floating-point data, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted HTML document, related to non-standard NaN representation.

  • Published: Sep 10, 2010
  • Updated: Apr 13, 2023
  • CVE: CVE-2010-1807
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 9.3
  • AV:N/AC:M/Au:N/C:C/I:C/A:C

CWEs:

Software From Fixed in
apple / safari 4.0.2 4.0.2.x
apple / safari 4.0.1 4.0.1.x
apple / safari 4.0.5 4.0.5.x
apple / safari 4.0-beta 4.0-beta.x
apple / safari 4.0.3 4.0.3.x
apple / safari 4.1.1 4.1.1.x
apple / safari 4.1 4.1.x
apple / safari 4.0 4.0.x
apple / safari 4.0.0b 4.0.0b.x
apple / safari 4.0.4 4.0.4.x
apple / safari 5.0.1 5.0.1.x
apple / safari 5.0 5.0.x
google / android - 2.1.x
google / android 1.0 1.0.x
google / android 1.6 1.6.x
google / android 2.0 2.0.x
google / android 1.5 1.5.x
google / android 1.1 1.1.x
webkitgtk / webkitgtk 1.2.3 1.2.3.x
webkitgtk / webkitgtk 1.2.0 1.2.0.x
webkitgtk / webkitgtk 1.2.2 1.2.2.x
webkitgtk / webkitgtk - 1.2.5.x
webkitgtk / webkitgtk 1.2.4 1.2.4.x
webkitgtk / webkitgtk 1.2.1 1.2.1.x