The HTTP client functionality in Apple iPhone OS 3.1 on the iPhone 2G and 3.1.3 on the iPhone 3GS allows remote attackers to cause a denial of service (Safari, Mail, or Springboard crash) via a crafted innerHTML property of a DIV element, related to a "malformed character" issue.
2010-04-01T22:30:00.360
2025-04-11T00:51:21.963
Deferred
CVSSv2: 5.0 (MEDIUM)
AV:N/AC:L/Au:N/C:N/I:N/A:P
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Hardware | apple | iphone | 2g | No |
Operating System | apple | iphone_os | 3.1 | Yes |
Hardware | apple | iphone | 3gs | No |
Operating System | apple | iphone_os | 3.1.3 | Yes |