Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a large integer in the numcolors attribute of a recolorinfo element in a VML file, possibly a related issue to CVE-2007-0024.
Weaknesses in this category are related to improper calculation or conversion of numbers.
Link | Tags |
---|---|
http://nishantdaspatnaik.yolasite.com/ipodpoc4.php | exploit |
http://www.exploit-db.com/exploits/11890 | exploit |
http://www.securityfocus.com/bid/38990 | vdb entry exploit |