WebKit before r41741, as used in Apple iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Safari, and other software, allows remote attackers to cause a denial of service (memory consumption or device reset) via a web page containing an HTMLSelectElement object with a large length attribute, related to the length property of a Select object.
Vector
NETWORK
Complexity
MEDIUM
Authentication
NONE
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE
Apple iPhone OS 2.2
Apple iPhone OS 2.1.1
Apple iPhone OS 2.1
Apple iPhone OS 2.0.2
Apple iPhone OS 2.0.1
Apple iPhone OS 2.0.0
Apple iPhone OS 2.0
Apple iPhone OS 1.1.5
Apple iPhone OS 1.1.4
Apple iPhone OS 1.1.3
Apple iPhone OS 1.1.2
Apple iPhone OS 1.1.1
Apple iPhone OS 1.1.0
Apple iPhone OS 1.0.2
Apple iPhone OS 1.0.1
Apple iPhone OS 1.0.0
Apple iPhone OS 2.2.1