CVE-2008-0298: Input Validation
Published Jan 16, 2008
·Updated
KHTML WebKit as used in Apple Safari 2.x allows remote attackers to cause a denial of service (browser crash) via a crafted web page, possibly involving a STYLE attribute of a DIV element.
Affected Software
6 affected components
Apple iOS and macOS
Apple Safari=2.0
Apple Safari=2.0.1
Apple Safari=2.0.2
Apple Safari=2.0.3
Apple Safari=2.0.4
Event History
Jan 16, 2008
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
11:00 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-0298?
CVE-2008-0298 is classified as a moderate severity vulnerability due to its potential to cause denial of service.
2
How do I fix CVE-2008-0298?
To mitigate CVE-2008-0298, users should update to the latest version of Apple Safari that addresses this vulnerability.
3
Which versions of Safari are affected by CVE-2008-0298?
CVE-2008-0298 affects Apple Safari version 2.0 through 2.0.4.
4
What type of attack is CVE-2008-0298 associated with?
CVE-2008-0298 is associated with a denial of service attack that can crash the browser through crafted web pages.
5
Is CVE-2008-0298 specific to macOS or iOS?
CVE-2008-0298 specifically affects Apple Mobile Safari, which is available on both macOS and iOS systems.