ID

VAR-E-200906-0485


CVE

cve_id:CVE-2009-2535

Trust: 1.9

cve_id:CVE-2009-1692

Trust: 0.8

cve_id:CVE-2009-2575

Trust: 0.3

cve_id:CVE-2009-2536

Trust: 0.3

cve_id:CVE-2009-2538

Trust: 0.3

cve_id:CVE-2009-2537

Trust: 0.3

cve_id:CVE-2009-2539

Trust: 0.3

cve_id:CVE-2009-2542

Trust: 0.3

cve_id:CVE-2009-2541

Trust: 0.3

cve_id:CVE-2009-2540

Trust: 0.3

sources: BID: 35446 // PACKETSTORM: 79310 // EXPLOIT-DB: 9160 // EDBNET: 33346

EDB ID

9160


TITLE

Multiple Browsers - Denial of Service - Multiple dos Exploit

Trust: 0.6

sources: EXPLOIT-DB: 9160

DESCRIPTION

Multiple Browsers - Denial of Service. CVE-56253CVE-2009-2535 . dos exploit for Multiple platform

Trust: 0.6

sources: EXPLOIT-DB: 9160

AFFECTED PRODUCTS

vendor:multiplemodel:browsersscope: - version: -

Trust: 1.0

vendor:ecmascriptmodel: - scope: - version: -

Trust: 0.5

vendor:webkitmodel:open source project webkitscope:eqversion:0

Trust: 0.3

vendor:sonymodel:playstationscope:eqversion:30

Trust: 0.3

vendor:researchmodel:in motion blackberryscope:eqversion:88004.2

Trust: 0.3

vendor:researchmodel:in motion blackberryscope:eqversion:88004.1

Trust: 0.3

vendor:pardusmodel:linuxscope:eqversion:20080

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.63

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.62

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.61

Trust: 0.3

vendor:operamodel:software opera web browser betascope:eqversion:9.601

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.60

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.52

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.51

Trust: 0.3

vendor:operamodel:software opera web browser betascope:eqversion:9.50

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.5

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.27

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.26

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.25

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.24

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.23

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.22

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.21

Trust: 0.3

vendor:operamodel:software opera web browser betascope:eqversion:9.201

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.20

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.10

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.02

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9.01

Trust: 0.3

vendor:operamodel:software opera web browserscope:eqversion:9

Trust: 0.3

vendor:nokiamodel:n95 phonescope:eqversion:0

Trust: 0.3

vendor:nokiamodel:n82scope:eqversion:0

Trust: 0.3

vendor:nokiamodel:n810scope:eqversion:0

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:8.0.3.3

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:8.0.3.1

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:8.0.2

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:8.0.1

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:8.0

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:7.2

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:7.1

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:7.0

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:6.2.3

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:6.2.2

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:6.2.1

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:6.2

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:6.1

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:6.01

Trust: 0.3

vendor:netscapemodel:macscope:eqversion:6.0

Trust: 0.3

vendor:netscapemodel:netscapescope:eqversion:6.0

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:3.0.4

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:3.0.3

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:3.0.2

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:3.0.1

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.9

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.8

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.7

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.6

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.5

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.4

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.3

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.17

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.16

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.10

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.1

Trust: 0.3

vendor:mozillamodel:firefox betascope:eqversion:3.05

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:3.0

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.0.2

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.0.15

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.0.14

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.0.13

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.0.12

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0.0.11

Trust: 0.3

vendor:mozillamodel:firefox rc3scope:eqversion:2.0

Trust: 0.3

vendor:mozillamodel:firefox rc2scope:eqversion:2.0

Trust: 0.3

vendor:mozillamodel:firefox betascope:eqversion:2.01

Trust: 0.3

vendor:mozillamodel:firefoxscope:eqversion:2.0

Trust: 0.3

vendor:midbrowsermodel:midbrowserscope:eqversion:0

Trust: 0.3

vendor:microsoftmodel:internet explorer sp4scope:eqversion:5.0.1

Trust: 0.3

vendor:microsoftmodel:internet explorer sp3scope:eqversion:5.0.1

Trust: 0.3

vendor:microsoftmodel:internet explorer sp2scope:eqversion:5.0.1

Trust: 0.3

vendor:microsoftmodel:internet explorer sp1scope:eqversion:5.0.1

Trust: 0.3

vendor:microsoftmodel:internet explorerscope:eqversion:5.0.1

Trust: 0.3

vendor:microsoftmodel:internet explorer rc1scope:eqversion:8

Trust: 0.3

vendor:microsoftmodel:internet explorer betascope:eqversion:82

Trust: 0.3

vendor:microsoftmodel:internet explorer betascope:eqversion:81

Trust: 0.3

vendor:microsoftmodel:internet explorerscope:eqversion:8

Trust: 0.3

vendor:microsoftmodel:internet explorer beta3scope:eqversion:7.0

Trust: 0.3

vendor:microsoftmodel:internet explorer beta2scope:eqversion:7.0

Trust: 0.3

vendor:microsoftmodel:internet explorer beta1scope:eqversion:7.0

Trust: 0.3

vendor:microsoftmodel:internet explorerscope:eqversion:7.0

Trust: 0.3

vendor:microsoftmodel:internet explorer sp1scope:eqversion:6.0

Trust: 0.3

vendor:microsoftmodel:internet explorerscope:eqversion:6.0

Trust: 0.3

vendor:microsoftmodel:internet explorer sp2scope:eqversion:5.5

Trust: 0.3

vendor:microsoftmodel:internet explorer sp1scope:eqversion:5.5

Trust: 0.3

vendor:microsoftmodel:internet explorerscope:eqversion:5.5

Trust: 0.3

vendor:microsoftmodel:internet explorerscope:eqversion:5.0

Trust: 0.3

vendor:mandrivamodel:linux mandrake x86 64scope:eqversion:2010.0

Trust: 0.3

vendor:mandrivamodel:linux mandrakescope:eqversion:2010.0

Trust: 0.3

vendor:mandrivamodel:linux mandrake x86 64scope:eqversion:2009.1

Trust: 0.3

vendor:mandrivamodel:linux mandrakescope:eqversion:2009.1

Trust: 0.3

vendor:mandrivamodel:linux mandrake x86 64scope:eqversion:2008.0

Trust: 0.3

vendor:mandrivamodel:linux mandrakescope:eqversion:2008.0

Trust: 0.3

vendor:mandrakesoftmodel:corporate server x86 64scope:eqversion:4.0

Trust: 0.3

vendor:mandrakesoftmodel:corporate serverscope:eqversion:4.0

Trust: 0.3

vendor:kdemodel:konqueror embeddedscope:eqversion:0.1

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.95

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.5.9

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.5.7

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.5.6

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.5.5

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.5.2

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.5.1

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.3.2

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.3.1

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.3

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.2.3

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.2.2-6

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.2.1

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.1.5

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.1.4

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.1.3

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.1.2

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.1.1

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.1

Trust: 0.3

vendor:kdemodel:konqueror bscope:eqversion:3.0.5

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.0.5

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.0.3

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.0.2

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.0.1

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:3.0

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:2.2.2

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:2.2.1

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:2.1.2

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:2.1.1

Trust: 0.3

vendor:kdemodel:konquerorscope:eqversion:4.1

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:2.0.172.33

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:2.0.172.31

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:2.0.172.30

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:1.0.154.61

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:0.3.1549

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:0.2.149.30

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:0.2.149.29

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:0.2.149.27

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:1.0.154.65

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:1.0.154.64

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:1.0.154.59

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:1.0.154.55

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:1.0.154.53

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:1.0.154.48

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:1.0.154.46

Trust: 0.3

vendor:googlemodel:chromescope:eqversion:1.0.154.36

Trust: 0.3

vendor:debianmodel:linux sparcscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux s/390scope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux powerpcscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux mipselscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux mipsscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux m68kscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux ia-64scope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux ia-32scope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux hppascope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux armelscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux armscope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux amd64scope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linux alphascope:eqversion:5.0

Trust: 0.3

vendor:debianmodel:linuxscope:eqversion:5.0

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.2.1

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.0.2

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.0.1

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:1.1.4

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:1.1.3

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:1.1.2

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:1.1.1

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.2

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.1

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:2.0

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:1.1

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:0

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.2.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.0.2

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.0.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:1.1.4

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:1.1.3

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:1.1.2

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:1.1.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:1.0.2

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:1.0.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.2

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:2.0

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:1.1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:1

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:0

Trust: 0.3

vendor:aigomodel:p8860scope:eqversion:0

Trust: 0.3

vendor:operamodel:software opera web browserscope:neversion:9.64

Trust: 0.3

vendor:mozillamodel:firefoxscope:neversion:3.0.5

Trust: 0.3

vendor:mozillamodel:firefoxscope:neversion:2.0.19

Trust: 0.3

vendor:googlemodel:chromescope:neversion:2.0.172.37

Trust: 0.3

vendor:applemodel:ipod touchscope:neversion:3.0

Trust: 0.3

vendor:applemodel:iphonescope:neversion:3.0

Trust: 0.3

sources: BID: 35446 // PACKETSTORM: 79310 // EXPLOIT-DB: 9160

EXPLOIT

________________________________________________________________________

One bug to rule them all
IE5,IE6,IE7,IE8,Netscape,Firefox,Safari,Opera,Konqueror,
Seamonkey,Wii,PS3,iPhone,iPod,Nokia,Siemens.... and more.
Don't wet your pants - it's DoS only
________________________________________________________________________

Release mode: Tried hard to coordinate - gave up
Reference : [GSEC-TZO-26-2009] - One bug to rule them all
WWW : http://www.g-sec.lu/one-bug-to-rule-them-all.html
Vendors :
http://www.firefox.com
http://www.apple.com
http://www.opera.com
http://www.sony.com
http://www.nintendo.com
http://www.nokia.com
http://www.siemens.com
others..
Status : Varies
CVE : CVE-2009-1692 (created by apple same root cause)
Credit : Except Apple - nobody

Affected products :
~~~~~~~~~~~~~~~~~
- Internet Explorer 5, 6, 7, 8 (all versions)
- Chrome (limited)
- Opera
- Seamonkey
- Midbrowser
- Netscape 6 & 8 (9 years ago)
- Konqueror (all versions)
- Apple iPhone + iPod
- Apple Safari
- Thunderbird
- Nokia Phones : Nokia N95 (Symbian OS v.9.2),Nokia N82, Nokia N810 Internet Tablet
- Aigo P8860 (Browser hangs and cannot be restarted)
- Siemens phones
- Google T-Mobile G1 TC4-RC30
- Ubuntu (Operating system sometimes reboots, memory management failure)
- possibly more devices and products that support Javascript,
try it yourselves. POC here : http://www.crashthisthing.com/select.html

Patch availability :
~~~~~~~~~~~~~~~~~~
- Mozilla : Fixed in Firefox 3.0.5 and 2.0.0.19
https://bugzilla.mozilla.org/show_bug.cgi?id=460713
- Apple iPhone&iPod : patched
- IE : No patch for IE5, IE6, IE7, IE8 until IE9
- Webkit : Patched in r41741 - https://bugs.webkit.org/show_bug.cgi?id=23319
- Chrome : Patched, unknown which version)
- Opera : Patched after version 9.64
- Thunderbird (unknown)
- Konqueror : unknown (did not respond)
- Nokia : unknown, opened a case but never came back
- Aigo P8860 : unknown
- Siemens : unknown
- Others ? Find out by visiting the POC at
http://crashthisthing.com/select.html

I. Background
~~~~~~~~~~~
Quoting Wikipedia "ECMAScript is a scripting language, standardized by Ecma
International in the ECMA-262 specification and ISO/IEC 16262. The language
is widely used on the web, especially in the form of its three best-known
dialects, JavaScript, ActionScript, and JScript."

II. Description
~~~~~~~~~~~~~
Calling the select() method with a large integer, results in continuos
allocation of x+n bytes of memory exhausting memory after a while.
The impact varies from null pointer dereference (no more memory,hence
crashing the browser) to the reboot of the complete Operation System
(Konqueror&Ubuntu)

There had never been a limit specified as to how many html elements the select
call should handle, after the report of this Bug, vendors apparently agreed to a
limit of 10.000 elements : "Talked to some Apple and Opera guys at the
WHATWG social, and we decided this was a good number"

III. Impact
~~~~~~~~~
The Impact varies from Browser to Browser and from OS to OS.

Here is a small excerpt:
- Konqueror (Ubuntu)- allocates 2GB of memory then either crashes
the Browser or (most often) the OS reboots. Ubuntu's memory
management system appears to be configured as to NOT stop the process
that consumes too much memory, but a random process.
This sometimes leads to processes that are vital for the OS to
be killed, hence the reboot. I am not kidding. Thanks to
'FX' for Memory management hint.

- Chrome : allocates 2GB of memory then crashes tab with a null pointer

- Firefox : allocates 2GB of memory then the Browser crashes

- IE5,6,7,8 : allocates 2GB of memory then the Browser crashes

- Opera : Allocated and commits as much memory as available,
will not crash but other applications will become unstable

- Nintento WII (Opera) : Console hangs, needs hard reset
Video: http://vimeo.com/2937101 (Thanks to David Raison)

- Sony PS3 - Console hangs, needs hard reset
Video: http://vimeo.com/2937101 (Thanks to Chris Gates)

- iPhone - iPhone hangs and needs hard reset
Video: http://vimeo.com/2873339 (Thanks to g0tcha)

- Aigo P8860 (Browser hangs and cannot be restarted)

IV. Proof of concept
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
<script>
function poc(o) {
e = document.createElement("select");
e.length=2147483647;
}

function go() {
poc(0);
}
</script>

URL: http://www.crashthisthing.com/select.html

Some have not understood what this code does, it does NOT loop as some vendors
claimed, it just calls select.lenght() ONCE with a huge integer. One might wonder
if over the 9 last years that this bug existed, nobody ever entered a large
number in a select.lenght() call.

IV. Disclosure timeline
~~~~~~~~~~~~~~~~~~~~~~~
Nothing particular to note, except the usual discussion about availability being
a security issue.

V. Thanks
~~~~~~~~~~~~~~~~~~~~~~~
Chris Gates, David Raison, Fahem Adam, a team of engineers that recognise themselves
and oCert for not helping coordinate this bug.

# milw0rm.com [2009-07-15]

Trust: 1.0

sources: EXPLOIT-DB: 9160

EXPLOIT LANGUAGE

txt

Trust: 0.6

sources: EXPLOIT-DB: 9160

PRICE

free

Trust: 0.6

sources: EXPLOIT-DB: 9160

TYPE

Denial of Service

Trust: 1.0

sources: EXPLOIT-DB: 9160

TAGS

tag:exploit

Trust: 0.5

tag:denial of service

Trust: 0.5

sources: PACKETSTORM: 79310

CREDITS

Thierry Zoller

Trust: 0.6

sources: EXPLOIT-DB: 9160

EXTERNAL IDS

db:NVDid:CVE-2009-2535

Trust: 1.9

db:EXPLOIT-DBid:9160

Trust: 1.6

db:NVDid:CVE-2009-1692

Trust: 0.8

db:EDBNETid:33346

Trust: 0.6

db:PACKETSTORMid:79310

Trust: 0.5

db:NVDid:CVE-2009-2575

Trust: 0.3

db:NVDid:CVE-2009-2536

Trust: 0.3

db:NVDid:CVE-2009-2538

Trust: 0.3

db:NVDid:CVE-2009-2537

Trust: 0.3

db:NVDid:CVE-2009-2539

Trust: 0.3

db:NVDid:CVE-2009-2542

Trust: 0.3

db:NVDid:CVE-2009-2541

Trust: 0.3

db:NVDid:CVE-2009-2540

Trust: 0.3

db:BIDid:35446

Trust: 0.3

sources: BID: 35446 // PACKETSTORM: 79310 // EXPLOIT-DB: 9160 // EDBNET: 33346

REFERENCES

url:https://nvd.nist.gov/vuln/detail/cve-2009-2535

Trust: 1.6

url:https://www.exploit-db.com/exploits/9160/

Trust: 0.6

url:https://nvd.nist.gov/vuln/detail/cve-2009-1692

Trust: 0.5

url:http://www.apple.com/iphone/

Trust: 0.3

url:http://www.g-sec.lu/one-bug-to-rule-them-all.html

Trust: 0.3

url:http://www.apple.com/ipodtouch/

Trust: 0.3

url:http://www.mandriva.com/en/security/advisories?name=mdvsa-2009:346

Trust: 0.3

url:http://support.apple.com/kb/ht3639

Trust: 0.3

sources: BID: 35446 // PACKETSTORM: 79310 // EXPLOIT-DB: 9160 // EDBNET: 33346

SOURCES

db:BIDid:35446
db:PACKETSTORMid:79310
db:EXPLOIT-DBid:9160
db:EDBNETid:33346

LAST UPDATE DATE

2022-07-27T10:03:59.031000+00:00


SOURCES UPDATE DATE

db:BIDid:35446date:2015-03-19T08:42:00

SOURCES RELEASE DATE

db:BIDid:35446date:2009-06-17T00:00:00
db:PACKETSTORMid:79310date:2009-07-17T18:40:11
db:EXPLOIT-DBid:9160date:2009-07-15T00:00:00
db:EDBNETid:33346date:2009-07-15T00:00:00