PT-2007-6486 · Apple · Safari
Dre
+1
·
Published
2007-10-14
·
Updated
2022-08-09
·
CVE-2007-5450
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Safari on Apple iPod touch and iPhone version 1.1.1
Description:
The issue allows user-assisted remote attackers to cause an application crash and enable filesystem browsing by the local user via a certain TIFF file. This can result in a denial of service.
Recommendations:
For Safari on Apple iPod touch and iPhone version 1.1.1, consider avoiding the use of TIFF files from untrusted sources until a fix is available. As a temporary workaround, restrict access to sensitive filesystem areas to minimize the risk of exploitation.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Safari