PT-2010-2891 · Apple · Ios+1
Publicado
2010-03-29
·
Atualizado
2012-03-30
·
CVE-2010-1181
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Safari on Apple iPhone OS version 3.1.3 for iPod touch
Description
The issue allows remote attackers to cause a denial of service, resulting in an application crash, or possibly execute arbitrary code. This is achieved by using a long string in a
MARQUEE element.Recommendations
For Safari on Apple iPhone OS version 3.1.3 for iPod touch, consider avoiding the use of long strings in
MARQUEE elements until a fix is available. As a temporary workaround, restricting the handling of MARQUEE elements may help minimize the risk of exploitation.Exploit
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Safari
Ios