Safari in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 does not properly handle HTML TABLE elements, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.
2008-11-25T23:30:00.437
2025-04-09T00:30:58.490
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Hardware | apple | ipod_touch | * | No |
Operating System | apple | iphone_os | * | No |
Application | apple | safari | * | Yes |
Operating System | apple | iphone_os | 1.0 | Yes |
Operating System | apple | iphone_os | 1.0.1 | Yes |
Operating System | apple | iphone_os | 1.0.2 | Yes |
Operating System | apple | iphone_os | 1.1 | Yes |
Operating System | apple | iphone_os | 1.1.1 | Yes |
Operating System | apple | iphone_os | 1.1.2 | Yes |
Operating System | apple | iphone_os | 1.1.3 | Yes |
Operating System | apple | iphone_os | 1.1.4 | Yes |
Operating System | apple | iphone_os | 1.1.5 | Yes |
Operating System | apple | iphone_os | 2.0 | Yes |
Operating System | apple | iphone_os | 2.0.1 | Yes |
Operating System | apple | iphone_os | 2.0.2 | Yes |
Operating System | apple | iphone_os | 2.1 | Yes |