CVE-2006-4408Apple MAC OS X vulnerability

2 documents2 sources
Severity
5.0MEDIUMNVD
EPSS
0.3%
top 43.34%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 30
Latest updateMay 1

Description

The Security Framework in Apple Mac OS X 10.4 through 10.4.8 allows remote attackers to cause a denial of service (resource consumption) via certain public key values in an X.509 certificate that requires extra resources during signature verification. NOTE: this issue may be similar to CVE-2006-2940.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDapple/mac_os_x9 versions+8

🔴Vulnerability Details

1
GHSA
GHSA-2hqc-9p94-56j8: The Security Framework in Apple Mac OS X 102022-05-01