CVE-2008-2000: Medium severity safari vulnerability
Published Apr 28, 2008
·Updated
Unspecified vulnerability in Apple Safari 3.1.1 allows remote attackers to cause a denial of service (application crash) via JavaScript code that calls document.write in an infinite loop.
Affected Software
1 affected component
Safari=3.1.1
Event History
Apr 28, 2008
CVE Published
via MITRE·06:21 PM
Data Sourced
via MITRE·06:21 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-2000?
CVE-2008-2000 has a medium severity level as it leads to a denial of service due to application crashes.
2
How do I fix CVE-2008-2000?
To fix CVE-2008-2000, update Apple Safari to a more recent version that has patched this vulnerability.
3
What type of attack does CVE-2008-2000 involve?
CVE-2008-2000 involves a denial of service attack that utilizes JavaScript to repeatedly call document.write in an infinite loop.
4
Which versions of Safari are affected by CVE-2008-2000?
Only Apple Safari version 3.1.1 is affected by CVE-2008-2000.
5
What happens if an attacker exploits CVE-2008-2000?
If exploited, CVE-2008-2000 can cause the Safari application to crash, disrupting the user's browsing experience.