PT-2005-3415 · Apple · Safari
Publicado
2005-08-19
·
Atualizado
2008-09-05
·
CVE-2005-2516
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Safari versions 10.3.9 through 10.4.2
Description
The issue concerns Safari's handling of Rich Text Format (RTF) files, allowing remote attackers to execute arbitrary commands by directly accessing URLs without normal security checks.
Recommendations
For versions 10.3.9 through 10.4.2, consider disabling the rendering of RTF files in Safari until a patch is available. Restrict access to potentially malicious RTF files to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Safari