Format string vulnerability in Apple Safari 2.0.4 (419.3) allows remote user-assisted attackers to cause a denial of service (crash) via format string specifiers in filenames that are not properly handled when calling the (1) NSLog and (2) NSBeginAlertSheet Apple AppKit functions.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/22326 | vdb entry |
http://www.osvdb.org/32710 | vdb entry |
http://www.digitalmunition.com/MOAB-30-01-2007.html |