Apple iPhone Mobile Safari Memory Exhaustion Remote Denial of Service Vulnerability
BID:27442
Info
Apple iPhone Mobile Safari Memory Exhaustion Remote Denial of Service Vulnerability
| Bugtraq ID: | 27442 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2008-0729 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 24 2008 12:00AM |
| Updated: | May 07 2015 05:33PM |
| Credit: | fuzion discovered this issue. |
| Vulnerable: |
Apple Mobile Safari 0 Apple iPhone 1.1.3 Apple iPhone 1.1.2 |
| Not Vulnerable: | |
Discussion
Apple iPhone Mobile Safari Memory Exhaustion Remote Denial of Service Vulnerability
Apple iPhone is prone to a remote denial-of-service vulnerability.
Attackers can exploit this issue by enticing an unsuspecting user to view a maliciously crafted webpage. Successful attacks cause a kernel panic, crashing the device. Given the nature of this issue, remote code execution may also be possible, but this has not been confirmed.
iPhone 1.1.2 and 1.1.3 are affected; other versions may also be vulnerable.
Apple iPhone is prone to a remote denial-of-service vulnerability.
Attackers can exploit this issue by enticing an unsuspecting user to view a maliciously crafted webpage. Successful attacks cause a kernel panic, crashing the device. Given the nature of this issue, remote code execution may also be possible, but this has not been confirmed.
iPhone 1.1.2 and 1.1.3 are affected; other versions may also be vulnerable.
Exploit / POC
Apple iPhone Mobile Safari Memory Exhaustion Remote Denial of Service Vulnerability
Attackers can exploit this issue by enticing unsuspecting users to view maliciously crafted web pages.
Attackers can exploit this issue by enticing unsuspecting users to view maliciously crafted web pages.
Solution / Fix
Apple iPhone Mobile Safari Memory Exhaustion Remote Denial of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Apple iPhone Mobile Safari Memory Exhaustion Remote Denial of Service Vulnerability
References:
References: