PT-2008-5017 · Apple · Macos X

Publicado

2008-10-10

·

Atualizado

2017-08-08

·

CVE-2008-3647

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Mac OS X versions 10.4.11 through 10.5.5
Description The issue is related to a buffer overflow in the PSNormalizer component, which can be triggered by a PostScript file containing a crafted bounding box comment. This can lead to a denial of service, causing the application to terminate, and potentially allow remote attackers to execute arbitrary code.
Recommendations For Mac OS X versions 10.4.11 through 10.5.5, consider avoiding the use of PostScript files from untrusted sources until a fix is available. As a temporary workaround, restrict the execution of PostScript files to minimize the risk of exploitation.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-3647

Produtos afetados

Macos X