Record summary

CVE-2008-2304 has a selected CVSS score of 6.8; EIP currently links 1 catalogued exploit.

Description

Buffer overflow in Apple Core Image Fun House 2.0 and earlier in CoreImage Examples in Xcode tools before 3.1 allows user-assisted attackers to execute arbitrary code or cause a denial of service (application crash) via a .funhouse file with a string XML element that contains many characters.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBCore Image Fun House 2.0 (OSX) - Arbitrary Code Execution (PoC)ExploitDB exploitby Adriel T. DesautelsNot analyzed1 file
ExploitDB

PoC details

References

11