PT-2007-6486 · Apple · Safari

Dre

+1

·

Published

2007-10-14

·

Updated

2022-08-09

·

CVE-2007-5450

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Safari on Apple iPod touch and iPhone version 1.1.1
Description: The issue allows user-assisted remote attackers to cause an application crash and enable filesystem browsing by the local user via a certain TIFF file. This can result in a denial of service.
Recommendations: For Safari on Apple iPod touch and iPhone version 1.1.1, consider avoiding the use of TIFF files from untrusted sources until a fix is available. As a temporary workaround, restrict access to sensitive filesystem areas to minimize the risk of exploitation.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2007-5450

Affected Products

Safari