CVE-2008-0894

Apple Safari - Memory Information Disclosure or Denial of Service via Crafted BMP or GIF File

Title source: llm
STIX 2.1

Description

Apple Safari might allow remote attackers to obtain potentially sensitive memory contents or cause a denial of service (crash) via a crafted (1) bitmap (BMP) or (2) GIF file, a related issue to CVE-2008-0420.

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/488264/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1019487
Issue Tracking x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=408076
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/3685
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/27947

Scores

EPSS 0.0120
EPSS Percentile 64.9%

Details

Status published
Products (1)
apple/safari
Published Feb 21, 2008
Tracked Since Feb 18, 2026