CVE-2006-3503Apple MAC OS X vulnerability

4 documents2 sources
Severity
7.8HIGHNVD
NVD5.1
EPSS
1.1%
top 22.33%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 3
Latest updateMay 1

Description

Integer overflow in ImageIO in Apple Mac OS X 10.4.7 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a malformed GIF image.

CVSS vector

AV:N/AC:H/C:P/I:P/A:PExploitability: 4.9 | Impact: 6.4

Affected Packages2 packages

NVDapple/mac_os_x10.4.7, 10.4.8+1
NVDapple/mac_os_x_server10.4.7, 10.4.8+1

🔴Vulnerability Details

2
GHSA
GHSA-q5qp-74pm-f7qq: Integer overflow in the gifGetBandProc function in ImageIO in Apple Mac OS X 102022-05-01
GHSA
GHSA-fg63-5rq3-4463: Integer overflow in ImageIO in Apple Mac OS X 102022-05-01