CVE-2006-1469Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple MAC OS X

Severity
7.5HIGHNVD
NVD2.6
EPSS
2.4%
top 14.91%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 27
Latest updateMay 1

Description

Stack-based buffer overflow in ImageIO in Apple Mac OS X 10.4 up to 10.4.6 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TIFF image.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

NVDapple/mac_os_x10.4.7+7
NVDapple/mac_os_x_server10.4.7+7

🔴Vulnerability Details

2
GHSA
GHSA-rv4w-xqjc-ghjp: The TIFFFetchAnyArray function in ImageIO in Apple OS X 102022-05-01
GHSA
GHSA-rw3r-8cf8-gc47: Stack-based buffer overflow in ImageIO in Apple Mac OS X 102022-05-01