Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-1035

Опубликовано: 03 июн. 2008
Источник: nvd
CVSS2: 4.3
EPSS Средний

Описание

Use-after-free vulnerability in Apple iCal 3.0.1 on Mac OS X allows remote CalDAV servers, and user-assisted remote attackers, to trigger memory corruption or possibly execute arbitrary code via an "ATTACH;VALUE=URI:S=osumi" line in a .ics file, which triggers a "resource liberation" bug. NOTE: CVE-2008-2007 was originally used for this issue, but this is the appropriate identifier.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apple:ical:3.0.1:*:os_x:*:*:*:*:*

EPSS

Процентиль: 95%
0.20926
Средний

4.3 Medium

CVSS2

Дефекты

CWE-94

Связанные уязвимости

github
почти 4 года назад

Use-after-free vulnerability in Apple iCal 3.0.1 on Mac OS X allows remote CalDAV servers, and user-assisted remote attackers, to trigger memory corruption or possibly execute arbitrary code via an "ATTACH;VALUE=URI:S=osumi" line in a .ics file, which triggers a "resource liberation" bug. NOTE: CVE-2008-2007 was originally used for this issue, but this is the appropriate identifier.

EPSS

Процентиль: 95%
0.20926
Средний

4.3 Medium

CVSS2

Дефекты

CWE-94