First published: Thu Apr 17 2008(Updated: )
Apple Safari before 3.1.1, when running on Windows XP or Vista, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a file download with a crafted file name, which triggers memory corruption.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows Vista | ||
Microsoft Windows XP | ||
Apple Mobile Safari | =3 | |
Apple Mobile Safari | =3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-1024 is considered a high severity vulnerability due to its potential to cause a denial of service and arbitrary code execution.
To fix CVE-2008-1024, you should update Apple Safari to version 3.1.1 or later.
CVE-2008-1024 affects Apple Safari versions prior to 3.1.1.
Yes, CVE-2008-1024 can potentially compromise Windows systems running affected versions of Apple Safari.
Yes, CVE-2008-1024 is triggered by downloading a file with a specially crafted file name.