Lucene search

K
cve[email protected]CVE-2011-3439
HistoryNov 11, 2011 - 6:55 p.m.

CVE-2011-3439

2011-11-1118:55:01
CWE-787
web.nvd.nist.gov
43
4
cve-2011-3439
freetype
coregraphics
apple ios
remote attackers
arbitrary code
denial of service
memory corruption
crafted font
document
nvd

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.4 High

AI Score

Confidence

High

0.01 Low

EPSS

Percentile

84.1%

FreeType in CoreGraphics in Apple iOS before 5.0.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font in a document.

Affected configurations

NVD
Node
appleiphone_osRange<5.0.1
Node
suselinux_enterprise_desktopMatch11sp1
OR
suselinux_enterprise_serverMatch11sp1-
OR
suselinux_enterprise_serverMatch11sp1vmware
OR
suselinux_enterprise_software_development_kitMatch11sp1
CPENameOperatorVersion
apple:iphone_osapple iphone oslt5.0.1

Social References

More

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.4 High

AI Score

Confidence

High

0.01 Low

EPSS

Percentile

84.1%