CVE-2006-3502Apple MAC OS X vulnerability

4 documents2 sources
Severity
7.8HIGHNVD
NVD5.1
EPSS
0.8%
top 26.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 3
Latest updateMay 1

Description

Unspecified vulnerability in ImageIO in Apple Mac OS X 10.4.7 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted GIF image that triggers a memory allocation failure that is not properly handled.

CVSS vector

AV:N/AC:H/C:P/I:P/A:PExploitability: 4.9 | Impact: 6.4

Affected Packages2 packages

NVDapple/mac_os_x10.4.7, 10.4.8+1
NVDapple/mac_os_x_server10.4.7, 10.4.8+1

🔴Vulnerability Details

2
GHSA
GHSA-q5qp-74pm-f7qq: Integer overflow in the gifGetBandProc function in ImageIO in Apple Mac OS X 102022-05-01
GHSA
GHSA-xj34-5mxh-m7xc: Unspecified vulnerability in ImageIO in Apple Mac OS X 102022-05-01