CVE-2007-0644
Apple Safari 2.0.4 - Denial of Service via Format String in Filename Handling
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-0644. PoCs published by LMH.
AI-analyzed exploit summary This is a writeup describing multiple format-string vulnerabilities in Mac OS X applications (Help Viewer, Safari, iPhoto, iMovie). The provided JavaScript snippet is a non-functional example demonstrating the concept but lacks exploit code.
Description
Format string vulnerability in Apple Safari 2.0.4 (419.3) allows remote user-assisted attackers to cause a denial of service (crash) via format string specifiers in filenames that are not properly handled when calling the (1) NSLog and (2) NSBeginAlertSheet Apple AppKit functions.
Exploits (1)
This is a writeup describing multiple format-string vulnerabilities in Mac OS X applications (Help Viewer, Safari, iPhoto, iMovie). The provided JavaScript snippet is a non-functional example demonstrating the concept but lacks exploit code.