CVE-2012-0608: Apple iPhone OS

Medium severity, CVSS 6.8. EPSS: 2.7% chance of exploitation in the next 30 days.

WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.

Affected products

  • Apple iPhone OS: before 5.1 (fixed in 5.1)
  • Apple iTunes: before 10.6 (fixed in 10.6)

Published 2012-03-08. Last modified 2026-06-16.