PT-2010-2887 · Apple · Ios+1

Published

2010-03-29

·

Updated

2010-03-30

·

CVE-2010-1177

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Safari on Apple iPhone OS version 3.1.3 for iPod touch
Description The issue allows remote attackers to cause a denial of service, potentially leading to an application crash, or possibly execute arbitrary code. This is achieved through vectors involving document.write calls with long crafted strings.
Recommendations For Safari on Apple iPhone OS version 3.1.3 for iPod touch, consider restricting the use of document.write calls with long strings until a patch is available.

Exploit

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-1177

Affected Products

Safari
Ios