Apple Ipod Touch vulnerabilities

3 known vulnerabilities affecting apple/ipod_touch.

Total CVEs
3
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2008-3950MEDIUMCVSS 5.0PoCv1.1.4v2.02008-09-16
CVE-2008-3950 [MEDIUM] CWE-189 CVE-2008-3950: Off-by-one error in the _web_drawInRect:withFont:ellipsis:alignment:measureOnly function in WebKit i Off-by-one error in the _web_drawInRect:withFont:ellipsis:alignment:measureOnly function in WebKit in Safari in Apple iPhone 1.1.4 and 2.0 and iPod touch 1.1.4 and 2.0 allows remote attackers to cause a denial of service (browser crash) via a JavaScript alert call with an argument that lacks breakable characters and has a length that is a multiple of
nvd
CVE-2008-3632CRITICALCVSS 9.3v1.1v1.1.1+6 more2008-09-11
CVE-2008-3632 [CRITICAL] CWE-399 CVE-2008-3632: Use-after-free vulnerability in WebKit in Apple iPod touch 1.1 through 2.0.2, and iPhone 1.0 through Use-after-free vulnerability in WebKit in Apple iPod touch 1.1 through 2.0.2, and iPhone 1.0 through 2.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a web page with crafted Cascading Style Sheets (CSS) import statements.
nvd
CVE-2008-3631HIGHCVSS 7.1v2.0v2.0.1+1 more2008-09-11
CVE-2008-3631 [HIGH] CWE-264 CVE-2008-3631: Application Sandbox in Apple iPod touch 2.0 through 2.0.2, and iPhone 2.0 through 2.0.2, does not pr Application Sandbox in Apple iPod touch 2.0 through 2.0.2, and iPhone 2.0 through 2.0.2, does not properly isolate third-party applications, which allows attackers to read arbitrary files in a third-party application's sandbox via a different third-party application.
nvd