PT-2007-6486 · Apple · Safari

+1

·

CVE-2007-5450

·

Published

2007-10-14

·

Updated

2022-08-09

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Safari on Apple iPod touch and iPhone version 1.1.1
Description: The issue allows user-assisted remote attackers to cause an application crash and enable filesystem browsing by the local user via a certain TIFF file. This can result in a denial of service.
Recommendations: For Safari on Apple iPod touch and iPhone version 1.1.1, consider avoiding the use of TIFF files from untrusted sources until a fix is available. As a temporary workaround, restrict access to sensitive filesystem areas to minimize the risk of exploitation.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-5450

Affected Products

Safari