Description: A vulnerability has been discovered in Mac OS X, which potentially can be exploited by malicious people to compromise a user's system.
The vulnerability is caused due to an error in the "KHTMLParser::popOneBlock()" function and can be exploited to cause a memory corruption via a script element in a div element redefining the document body.
Successful exploitation may allow execution of arbitrary code.
The vulnerability has been confirmed via Safari 2.0.4 (419.3). Other versions may also be affected.
Solution: Update to Mac OS X v10.4.8 or apply Security Update 2006-006.
Provided and/or discovered by: PC and XL
Changelog: 2006-08-03: Added CVE reference.
2006-09-29: Updated "Solution" section.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.