CVE-2008-1586

Published Nov 25, 2008

Last updated 2 years ago

Overview

Description
ImageIO in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allow remote attackers to cause a denial of service (memory consumption and device reset) via a crafted TIFF image.
Source
cve@mitre.org
NVD status
Modified

Risk scores

CVSS 2.0

Type
Primary
Base score
7.1
Impact score
6.9
Exploitability score
8.6
Vector string
AV:N/AC:M/Au:N/C:N/I:N/A:C

Weaknesses

nvd@nist.gov
CWE-399

Social media

Hype score
Not currently trending

Vendor comments

  • Red HatRed Hat does not consider this libTIFF bug to be a security issue.

Configurations