CVE-2010-1181: Input Validation
Published Mar 29, 2010
·Updated
Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a MARQUEE element.
Affected Software
4 affected components
apple iPhone OS=3.1.3
Apple iPod touch
All of the following
apple iPhone OS=3.1.3
Apple iPod touch
Event History
Mar 29, 2010
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
07:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·07:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-1181?
CVE-2010-1181 is considered a high severity vulnerability due to its potential to cause denial of service and execute arbitrary code.
2
How do I fix CVE-2010-1181?
To mitigate CVE-2010-1181, update your iPhone to a version later than 3.1.3.
3
Who is affected by CVE-2010-1181?
CVE-2010-1181 affects devices running Apple iPhone OS version 3.1.3.
4
What types of attacks are associated with CVE-2010-1181?
CVE-2010-1181 can be exploited through remote denial of service attacks and potentially arbitrary code execution.
5
Is Apple iPod Touch affected by CVE-2010-1181?
The Apple iPod Touch is not directly mentioned as affected, but it may be vulnerable if running the affected iPhone OS version.