CVE-2008-2001: Buffer Overflow
Published Apr 28, 2008
·Updated
Apple Safari 3.1.1 allows remote attackers to cause a denial of service (application crash) via a file:///%E2 link that triggers an out-of-bounds access, possibly due to a NULL pointer dereference.
Affected Software
1 affected component
Safari=3.1.1
Event History
Apr 28, 2008
CVE Published
via MITRE·06:21 PM
Data Sourced
via MITRE·06:21 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-2001?
CVE-2008-2001 has a severity level categorized as critical due to its potential to cause application crashes.
2
How do I fix CVE-2008-2001?
To fix CVE-2008-2001, upgrade to a newer version of Apple Safari that addresses the vulnerability.
3
What impact does CVE-2008-2001 have on users?
CVE-2008-2001 can lead to denial of service, resulting in unexpected application crashes for users.
4
Is CVE-2008-2001 specific to any operating systems?
CVE-2008-2001 specifically affects the Apple Safari 3.1.1 browser on macOS and other platforms where it is installed.
5
Can CVE-2008-2001 be exploited remotely?
Yes, CVE-2008-2001 can be exploited remotely by using crafted links that trigger the vulnerability.