HTTP: iPhone Mobile Safari LibTIFF Remote Code Execution
This signature detects attempts to exploit a known vulnerability against iPhone Mobile Safari. A successful attack can lead to arbitrary code execution.
Extended Description
LibTIFF is prone to a buffer-overflow vulnerability because the library fails to do proper boundary checks before copying user-supplied data into a finite-sized buffer. This issue allows remote attackers to execute arbitrary machine code in the context of appications using the affected library. Failed exploit attempts will likely crash the application, denying service to legitimate users.
Affected Products
Apple ipod_touch,Apple mac_os_x
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Red_hat
Suse
Apple
Trustix
Sun
Rpath
Libtiff
Avaya
Sgi
Gentoo
Slackware
Ubuntu
Mandriva
Debian
7.5