PT-2015-1796 · Apple · Data Detectors Engine+1

M1X7E1

·

Publicado

2015-08-13

·

Atualizado

2017-09-21

·

CVE-2015-5750

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Data Detectors Engine in Apple OS X versions prior to 10.10.5
Description The issue is caused by a buffer overflow in the Data Detectors Engine component of the Mac OS X operating system. Exploitation of this issue may allow a remote attacker to cause a denial of service using a sequence of Unicode characters, potentially leading to memory corruption and application crash.
Recommendations For versions prior to 10.10.5, update to version 10.10.5 or later to resolve the issue. As a temporary workaround, consider restricting the use of Unicode characters in input fields to minimize the risk of exploitation.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-11142
CVE-2015-5750

Produtos afetados

Data Detectors Engine
Os X