ID

VAR-200706-0568


CVE

CVE-2007-3376


TITLE

Apple Safari Vulnerable to buffer overflow

Trust: 0.8

sources: JVNDB: JVNDB-2007-002235

DESCRIPTION

Buffer overflow in Apple Safari 3.0.2 on Windows XP SP2 allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long value in the title HTML tag, which triggers the overflow when the user adds the page as a bookmark. Safari for Windows is prone to a buffer-overflow vulnerability. This issue is triggered when an attacker entices a victim to bookmark a maliciously crafted site. A remote attacker may exploit this issue to execute arbitrary machine code in the context of the affected application. Failed exploit attempts will result in denial-of-service conditions. Overflow is triggered when a user adds a web page to favorites

Trust: 1.98

sources: NVD: CVE-2007-3376 // JVNDB: JVNDB-2007-002235 // BID: 24619 // VULHUB: VHN-26738

AFFECTED PRODUCTS

vendor:applemodel:safariscope:eqversion:3.0.2

Trust: 1.8

vendor:microsoftmodel:windows xpscope:eqversion:sp3 sp2

Trust: 0.8

vendor:microsoftmodel:windows xpscope:eqversion:sp2

Trust: 0.6

vendor:applemodel:safari beta for windowsscope:eqversion:3.0.2

Trust: 0.3

vendor:applemodel:safari beta for windowsscope:neversion:3.0.3

Trust: 0.3

sources: BID: 24619 // JVNDB: JVNDB-2007-002235 // CNNVD: CNNVD-200706-398 // NVD: CVE-2007-3376

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2007-3376
value: HIGH

Trust: 1.0

NVD: CVE-2007-3376
value: HIGH

Trust: 0.8

CNNVD: CNNVD-200706-398
value: CRITICAL

Trust: 0.6

VULHUB: VHN-26738
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2007-3376
severity: HIGH
baseScore: 9.3
vectorString: AV:N/AC:M/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-26738
severity: HIGH
baseScore: 9.3
vectorString: AV:N/AC:M/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-26738 // JVNDB: JVNDB-2007-002235 // CNNVD: CNNVD-200706-398 // NVD: CVE-2007-3376

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

sources: NVD: CVE-2007-3376

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200706-398

TYPE

buffer overflow

Trust: 0.6

sources: CNNVD: CNNVD-200706-398

CONFIGURATIONS

sources: JVNDB: JVNDB-2007-002235

PATCH

title:Safariurl:http://www.apple.com/safari/

Trust: 0.8

title:Top Pageurl:http://windows.microsoft.com/

Trust: 0.8

sources: JVNDB: JVNDB-2007-002235

EXTERNAL IDS

db:NVDid:CVE-2007-3376

Trust: 2.8

db:BIDid:24619

Trust: 2.0

db:VUPENid:ADV-2007-2340

Trust: 1.7

db:OSVDBid:40882

Trust: 1.1

db:JVNDBid:JVNDB-2007-002235

Trust: 0.8

db:FULLDISCid:20070625 SAFARI BOOKMARKS BUFFER OVERFLOW VULNERABILITY

Trust: 0.6

db:XFid:35030

Trust: 0.6

db:BUGTRAQid:20070624 SAFARI BOOKMARKS BUFFER OVERFLOW VULNERABILITY

Trust: 0.6

db:CNNVDid:CNNVD-200706-398

Trust: 0.6

db:VULHUBid:VHN-26738

Trust: 0.1

sources: VULHUB: VHN-26738 // BID: 24619 // JVNDB: JVNDB-2007-002235 // CNNVD: CNNVD-200706-398 // NVD: CVE-2007-3376

REFERENCES

url:http://www.securityfocus.com/bid/24619

Trust: 1.7

url:http://www.securityfocus.com/archive/1/472209

Trust: 1.7

url:http://marc.info/?l=full-disclosure&m=118278848816602&w=2

Trust: 1.6

url:http://osvdb.org/40882

Trust: 1.1

url:http://www.vupen.com/english/advisories/2007/2340

Trust: 1.1

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/35030

Trust: 1.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2007-3376

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2007-3376

Trust: 0.8

url:http://xforce.iss.net/xforce/xfdb/35030

Trust: 0.6

url:http://www.frsirt.com/english/advisories/2007/2340

Trust: 0.6

url:http://www.apple.com/safari/

Trust: 0.3

url:/archive/1/472209

Trust: 0.3

url:http://marc.info/?l=full-disclosure&m=118278848816602&w=2

Trust: 0.1

sources: VULHUB: VHN-26738 // BID: 24619 // JVNDB: JVNDB-2007-002235 // CNNVD: CNNVD-200706-398 // NVD: CVE-2007-3376

CREDITS

E.Azizov is credited with the discovery of this vulnerability.

Trust: 0.3

sources: BID: 24619

SOURCES

db:VULHUBid:VHN-26738
db:BIDid:24619
db:JVNDBid:JVNDB-2007-002235
db:CNNVDid:CNNVD-200706-398
db:NVDid:CVE-2007-3376

LAST UPDATE DATE

2024-08-14T14:08:08.611000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-26738date:2017-07-29T00:00:00
db:BIDid:24619date:2016-07-05T22:00:00
db:JVNDBid:JVNDB-2007-002235date:2012-06-26T00:00:00
db:CNNVDid:CNNVD-200706-398date:2007-06-27T00:00:00
db:NVDid:CVE-2007-3376date:2017-07-29T01:32:12.800

SOURCES RELEASE DATE

db:VULHUBid:VHN-26738date:2007-06-25T00:00:00
db:BIDid:24619date:2007-06-25T00:00:00
db:JVNDBid:JVNDB-2007-002235date:2012-06-26T00:00:00
db:CNNVDid:CNNVD-200706-398date:2007-06-25T00:00:00
db:NVDid:CVE-2007-3376date:2007-06-25T20:30:00