ID

VAR-201103-0081


CVE

CVE-2011-1415


TITLE

Research In Motion BlackBerry Torch WebKit Integer overflow vulnerability

Trust: 0.6

sources: CNNVD: CNNVD-201103-177

DESCRIPTION

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-1290. Reason: This candidate is a duplicate of CVE-2011-1290. Notes: All CVE users should reference CVE-2011-1290 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage. An integer overflow vulnerability exists in WebKit in Research In Motion (RIM) BlackBerry Torch 9800 with firmware version 6.0.0.246. A remote attacker can execute arbitrary code with the help of an unknown vector. This vulnerability has been demonstrated by Vincenzo Iozzo, Willem Pinckaers and Ralf-Philipp Weinmann in the Pwn2Own hacking contest at CanSecWest 2011

Trust: 0.99

sources: NVD: CVE-2011-1415 // VULHUB: VHN-49360

AFFECTED PRODUCTS

vendor:applemodel:webkitscope: - version: -

Trust: 0.6

sources: CNNVD: CNNVD-201103-177

CVSS

SEVERITY

CVSSV2

CVSSV3

CNNVD: CNNVD-201103-177
value: CRITICAL

Trust: 0.6

sources: CNNVD: CNNVD-201103-177

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201103-177

TYPE

digital error

Trust: 0.6

sources: CNNVD: CNNVD-201103-177

EXTERNAL IDS

db:NVDid:CVE-2011-1415

Trust: 1.7

db:CNNVDid:CNNVD-201103-177

Trust: 0.7

db:VULHUBid:VHN-49360

Trust: 0.1

sources: VULHUB: VHN-49360 // CNNVD: CNNVD-201103-177 // NVD: CVE-2011-1415

REFERENCES

url:http://www.zdnet.com/blog/security/pwn2own-2011-blackberry-falls-to-webkit-browser-attack/8401

Trust: 0.6

url:http://dvlabs.tippingpoint.com/blog/2011/02/02/pwn2own-2011

Trust: 0.6

sources: CNNVD: CNNVD-201103-177

SOURCES

db:VULHUBid:VHN-49360
db:CNNVDid:CNNVD-201103-177
db:NVDid:CVE-2011-1415

LAST UPDATE DATE

2024-08-14T14:47:08.995000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-49360date:2011-03-18T00:00:00
db:CNNVDid:CNNVD-201103-177date:2011-03-15T00:00:00
db:NVDid:CVE-2011-1415date:2023-11-07T02:07:01

SOURCES RELEASE DATE

db:VULHUBid:VHN-49360date:2011-03-11T00:00:00
db:CNNVDid:CNNVD-201103-177date:2011-03-14T00:00:00
db:NVDid:CVE-2011-1415date:2011-03-11T17:55:03.713