10
CVE-2008-2303
- EPSS 19.35%
- Veröffentlicht 14.07.2008 18:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Integer signedness error in Safari on Apple iPhone before 2.0 and iPod touch before 2.0 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving JavaScript array indices that trigger an out-of-bounds access, a different vulnerability than CVE-2008-2307.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Apple ≫ Safari
Apple ≫ Iphone Version1.0
Apple ≫ Iphone Version1.1.3
Apple ≫ Iphone Version1.1.4
Apple ≫ Iphone Version1.02
Apple ≫ Ipod Touch Version1.1
Apple ≫ Ipod Touch Version1.1.1
Apple ≫ Ipod Touch Version1.1.2
Apple ≫ Ipod Touch Version1.1.3
Apple ≫ Ipod Touch Version1.1.4
Apple ≫ iPhone OS Version1.0.1
Apple ≫ iPhone OS Version1.0.2
Apple ≫ iPhone OS Version1.1.1
Apple ≫ iPhone OS Version1.1.2
Apple ≫ Iphone Version1.1.3
Apple ≫ Iphone Version1.1.4
Apple ≫ Iphone Version1.02
Apple ≫ Ipod Touch Version1.1
Apple ≫ Ipod Touch Version1.1.1
Apple ≫ Ipod Touch Version1.1.2
Apple ≫ Ipod Touch Version1.1.3
Apple ≫ Ipod Touch Version1.1.4
Apple ≫ iPhone OS Version1.0.1
Apple ≫ iPhone OS Version1.0.2
Apple ≫ iPhone OS Version1.1.1
Apple ≫ iPhone OS Version1.1.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 19.35% | 0.952 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|