VulnerabilityModified
CVE-2010-1817
Buffer overflow in ImageIO in Apple iOS before 4.1 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted GIF file.
MEDIUM 6.8EPSS 3.34%
Does this matter?
Lower severity and a low EPSS score (3.34%). Track it; it rarely justifies an emergency change on its own.
Description
Buffer overflow in ImageIO in Apple iOS before 4.1 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted GIF file.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 3.34% probability · 88th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- apple/iphone os
- Source
- product-security@apple.com
References
- http://lists.apple.com/archives/security-announce/2010//Sep/msg00002.htmlMailing List, Vendor Advisory
- http://support.apple.com/kb/HT4334Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/61697Third Party Advisory, VDB Entry
- http://lists.apple.com/archives/security-announce/2010//Sep/msg00002.htmlMailing List, Vendor Advisory
- http://support.apple.com/kb/HT4334Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/61697Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.