Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-3950

Опубликовано: 16 сент. 2008
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

Off-by-one error in the _web_drawInRect:withFont:ellipsis:alignment:measureOnly function in WebKit in Safari in Apple iPhone 1.1.4 and 2.0 and iPod touch 1.1.4 and 2.0 allows remote attackers to cause a denial of service (browser crash) via a JavaScript alert call with an argument that lacks breakable characters and has a length that is a multiple of the memory page size, leading to an out-of-bounds read.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

feisty

DNE

gutsy

not-affected

hardy

not-affected

intrepid

not-affected

upstream

needs-triage

Показывать по

EPSS

Процентиль: 91%
0.06514
Низкий

5 Medium

CVSS2

Связанные уязвимости

nvd
больше 17 лет назад

Off-by-one error in the _web_drawInRect:withFont:ellipsis:alignment:measureOnly function in WebKit in Safari in Apple iPhone 1.1.4 and 2.0 and iPod touch 1.1.4 and 2.0 allows remote attackers to cause a denial of service (browser crash) via a JavaScript alert call with an argument that lacks breakable characters and has a length that is a multiple of the memory page size, leading to an out-of-bounds read.

debian
больше 17 лет назад

Off-by-one error in the _web_drawInRect:withFont:ellipsis:alignment:me ...

github
почти 4 года назад

Off-by-one error in the _web_drawInRect:withFont:ellipsis:alignment:measureOnly function in WebKit in Safari in Apple iPhone 1.1.4 and 2.0 and iPod touch 1.1.4 and 2.0 allows remote attackers to cause a denial of service (browser crash) via a JavaScript alert call with an argument that lacks breakable characters and has a length that is a multiple of the memory page size, leading to an out-of-bounds read.

EPSS

Процентиль: 91%
0.06514
Низкий

5 Medium

CVSS2