Show filters
206 Total Results
Displaying 201-206 of 206
Sort by:
Attacker Value
Unknown

CVE-2008-3623

Disclosure Date: November 17, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in CoreGraphics in Apple Safari before 3.2 on Windows, in iPhone OS 1.0 through 2.2.1, and in iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted image, related to improper handling of color spaces.
0
Attacker Value
Unknown

CVE-2008-3644

Disclosure Date: November 17, 2008 (last updated October 04, 2023)
Apple Safari before 3.2 does not properly prevent caching of form data for form fields that have autocomplete disabled, which allows local users to obtain sensitive information by reading the browser's page cache.
0
Attacker Value
Unknown

CVE-2008-4216

Disclosure Date: November 17, 2008 (last updated October 04, 2023)
The plug-in interface in WebKit in Apple Safari before 3.2 does not prevent plug-ins from accessing local URLs, which allows remote attackers to obtain sensitive information via vectors that "launch local files."
0
Attacker Value
Unknown

CVE-2008-2001

Disclosure Date: April 28, 2008 (last updated October 04, 2023)
Apple Safari 3.1.1 allows remote attackers to cause a denial of service (application crash) via a file:///%E2 link that triggers an out-of-bounds access, possibly due to a NULL pointer dereference.
0
Attacker Value
Unknown

CVE-2008-1999

Disclosure Date: April 28, 2008 (last updated October 04, 2023)
Apple Safari 3.1.1 allows remote attackers to spoof the address bar by placing many "invisible" characters in the userinfo subcomponent of the authority component of the URL (aka the user field), as demonstrated by %E3%80%80 sequences.
0
Attacker Value
Unknown

CVE-2008-2000

Disclosure Date: April 28, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Apple Safari 3.1.1 allows remote attackers to cause a denial of service (application crash) via JavaScript code that calls document.write in an infinite loop.
0