peter bassill · operator
$ cve CVE-2008-0729 JSON

CVE-2008-0729 EXPLOIT

7.1
HIGH · CVSS 2.0 · EPSS 8.1% (pctl 95)

Patch early

A public exploit exists.

Description

Mobile Safari on Apple iPhone 1.1.2 and 1.1.3 allows remote attackers to cause a denial of service (memory exhaustion and device crash) via certain JavaScript code that constructs a long string and an array containing long string elements, possibly a related issue to CVE-2006-3677. NOTE: some of these details are obtained from third party information.

Scoring

CVSS7.1 (HIGH, v2.0)
VectorAV:N/AC:M/Au:N/C:N/I:N/A:C
EPSS8.07% — more likely to be exploited than 95% of all CVEs
WeaknessCWE-399
On CISA KEVno
Public exploityes
Published2008-02-12
Last modified2026-06-16

Affected (3)

VendorProduct
appleiphone
appleiphone os
applemobile safari

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD