vciy

Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5: 21 records in one advisory

21 records announced together, published between 2010-06-11 and 2010-11-20, every one of them citing the same advisory.

The advisory

Every record in this batch cites http://www.vupen.com/english/advisories/2011/0212. That is the CNA's own reference, held in the index, and it is why these records are on one page.

What the records offer

No record in this batch publishes a fixed version in held sources.

No record in this batch is listed by CISA in held sources.

15 of 21 records name something of its own. For the other 6, held sources say the same thing about each.

What this page does not cover

This batch is 21 of the 204 records that cite the same advisory. The other 183 are different findings announced alongside it.

30 of them are on the sibling batch linked below. The remaining 153 are grouped with nothing and have only their own record pages.

Other batches under the same advisory: vupen-0212-97eb17588c

The batch is what one advisory announced. It is not every record sharing this weakness, this product or this mechanism, and nothing here is scoped to any estate.

Listed for shared announcement, not shared vulnerability. Each record here is its own finding with its own page, and fixing one does not address another.

CVE-2010-1396contenteditable removing
CVE-2010-1397layout document_position_disconnected
CVE-2010-1404recursive handled deconstruction
CVE-2010-1405vertical positioning
CVE-2010-1414removechild
CVE-2010-1419window close action occurs
CVE-2010-1749invocations destructor
CVE-2010-1759node.normalize
CVE-2010-1771no title held
CVE-2010-1780no title held
CVE-2010-1786foreignobject
CVE-2010-3811no title held
CVE-2010-3816no title held
CVE-2010-3818no title held
CVE-2010-3823cve-2010-3415
CVE-2010-3824no title held

21 records, read from the index as it stood on 2026-09-20. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.