关于 CVE-2010-0042 的漏洞信息

1. 漏洞描述
From NVD
ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows does not ensure that memory access is associated with initialized memory, which allows remote attackers to obtain potentially sensitive information from process memory via a crafted TIFF image.
From 神龙GPT (AIGC)
在Apple Safari 4.0.5 之前和Windows上的iTunes 9.1 之前,ImageIO在Apple Safari 和iTunes 中未确保内存访问与初始化内存相关联,这允许远程攻击者通过创建的TIFF图像从进程内存中获取 potentially sensitive 信息。
2. 漏洞评分(CVSS)
From NVD
NVD 暂无评分
From 神龙GPT (AIGC)
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
3. 漏洞类别
From NVD
NVD 暂无漏洞类别信息
From 神龙GPT (AIGC)
神龙GPT 暂无漏洞类别信息(请耐心等待)
Reference