CVE-2008-2320 describes a stack-based buffer overflow in CarbonCore affecting Apple Mac OS X 10.4.11, 10.5.4, and various iPhone OS versions. This critical vulnerability, with a CVSS score of 9.3, allows remote attackers to execute arbitrary code or cause a denial of service through a long filename provided to the file management API. While the FAUCET Risk Score is high at 81/100, there is no evidence of active exploitation, public exploit code, or significant community discussion, suggesting it is not a current threat.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:apple:carboncore:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.