>> Apple Safari "rowspan" Attribute Handling Remote Denial of Service Vulnerability
Title : Apple Safari "rowspan" Attribute Handling Remote Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2006-1508 CVE ID : CVE-2006-2019
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-04-25
Technical Description
A vulnerability has been identified in Apple Safari, which could be exploited by remote attackers to cause a denial of service. This flaw is due to an error when handling a specially crafted HTML script that contains an overly large "rowspan" attribute, which could be exploited by remote attackers to exhaust all available memory resources via a malicious web page.