CVE-2008-3950 describes an off-by-one error in the WebKit rendering engine, specifically within the _web_drawInRect:withFont:ellipsis:alignment:measureOnly function. This flaw affects Apple iPhone 1.1.4 and 2.0, iPod touch 1.1.4 and 2.0, and Safari, allowing remote attackers to trigger a denial of service (browser crash). The vulnerability is exploited by providing a JavaScript alert call with a specific argument lacking breakable characters and having a length that is a multiple of the memory page size, leading to an out-of-bounds read. Rated with a CVSS score of 5.0, this vulnerability has a network attack vector and low attack complexity, requiring no authentication. The primary impact is a denial of service, meaning the browser will crash. Its FAUCET Risk Score is 82/100, indicating a moderate to high risk. While not listed on the KEV catalog or Hot List, an exploit for this vulnerability is available on ExploitDB (EDB-32341). There is no evidence of active exploitation, and community discussion and media coverage are minimal, suggesting it has not garnered significant attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.1.4CPE matchmatch criteria | cpe:2.3:h:apple:iphone:1.1.4:*:*:*:*:*:*:* | ||
2.0CPE matchmatch criteria | cpe:2.3:h:apple:iphone:2.0:*:*:*:*:*:*:* | ||
1.1.4CPE matchmatch criteria | cpe:2.3:h:apple:ipod_touch:1.1.4:*:*:*:*:*:*:* | ||
2.0CPE matchmatch criteria | cpe:2.3:h:apple:ipod_touch:2.0:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.