ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows does not ensure that memory access is associated with initialized memory, which allows remote attackers to obtain potentially sensitive information from process memory via a crafted BMP image.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2010-03-12T20:00:00
Updated: 2024-08-07T00:37:53.840Z
Reserved: 2009-12-15T00:00:00
Link: CVE-2010-0041
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-03-15T13:28:25.370
Modified: 2017-09-19T01:30:11.330
Link: CVE-2010-0041
Redhat
No data.