CVE-2007-3743: Buffer Overflow
Published Aug 3, 2007
·Updated
Stack-based buffer overflow in bookmark handling in Apple Safari 3 Beta before Update 3.0.3 on Windows allows user-assisted remote attackers to cause a denial of service (application crash) or execute arbitrary code via a bookmark with a long title.
Affected Software
1 affected component
Safari<=3.0.2
Remediation
Patch Available
Event History
Aug 3, 2007
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3743?
CVE-2007-3743 is classified as a high-severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2007-3743?
To fix CVE-2007-3743, users should upgrade to Apple Safari version 3.0.3 or later.
3
What type of attack does CVE-2007-3743 enable?
CVE-2007-3743 enables an attack that can lead to denial of service or arbitrary code execution through manipulated bookmarks.
4
Which versions of Safari are affected by CVE-2007-3743?
CVE-2007-3743 affects Apple Safari versions prior to 3.0.3 on Windows.
5
What exploit method is used in CVE-2007-3743?
CVE-2007-3743 is exploited through a stack-based buffer overflow in the bookmark handling feature.