CVE-2007-0644
Format string vulnerability in Apple Safari 2.0.4 (419.3) allows remote user-assisted attackers to cause a denial of service (crash) via format string specifiers in filenames that are not properly handled when calling the (1) NSLog and (2) NSBeginAlertSheet Apple AppKit functions.
- Apple Safari
- = 2.0.4_419.3
- Fix
- Available
- CVSS 2.0
- 7.1 HIGH
- EPSS
- 2.4% (83th percentile)
- NVD status
- Modified
- Published
- 2007-02-01
CVE-2007-0644 at NVD
1 known exploit for CVE-2007-0644
Proof-of-concept code and exploit modules indexed by Sploitus