9.3
CVSSv2

CVE-2010-1179

Published: 29/03/2010 Updated: 30/03/2010
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a large integer in the numcolors attribute of a recolorinfo element in a VML file, possibly a related issue to CVE-2007-0024.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple safari

Exploits

# Exploit Title: Bad "VML" Remote DoS on Safari for iPhone & iPod Touch # Date: 26/03/2010 # Author: Nishant Das Patnaik # For more of Nishant's research, please visit: # nishantdaspatnaikyolasitecom/researchphp # Tested on: iPod Touch 3G (iPhone OS 313) # Description: An attacker may direct the user to visit a specially crafted ...