CVE-2009-1712

Priority
Description
WebKit in Apple Safari before 4.0 does not prevent remote loading of local
Java applets, which allows remote attackers to execute arbitrary code, gain
privileges, or obtain sensitive information via an APPLET or OBJECT
element.
Assigned-to
micahg
Notes
jdstrandwebkit is a fork of khtml from kdelibs. kdelibs5 is farther from
it, while qt4-x11 attempts to unify khtml and webkit
mdeslaurcode does not appear present in kde4libs
Package
Upstream:needs-triage
Package
Upstream:needs-triage
Patches:
Upstream:http://trac.webkit.org/changeset/41568
More Information

Updated: 2019-12-05 20:53:14 UTC (commit 0aa5e7c87c8b55d2ec5c7f4ca1179cf75de91961)