CVE-2008-0729
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 8.1%
from disclosure to weapon0 days
Published on NVDFeb 12
1st PoCJan 24
exploitation probability
8.1%top 6% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Mobile Safari on Apple iPhone 1.1.2 and 1.1.3 allows remote attackers to cause a denial of service (memory exhaustion and device crash) via certain JavaScript code that constructs a long string and an array containing long string elements, possibly a related issue to CVE-2006-3677. NOTE: some of these details are obtained from third party information.
Affected products
n/a · n/apublic PoCs found — 2✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/31057cve_referencewww.exploit-db.com/exploits/4978unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://securityreason.com/securityalert/3630https://exchange.xforce.ibmcloud.com/vulnerabilities/39998https://www.exploit-db.com/exploits/4978http://www.securityfocus.com/archive/1/487607/100/0/threadedhttp://www.securityfocus.com/archive/1/492225/100/0/threadedhttp://www.securityfocus.com/bid/27442