Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

85319Bb6E6Ab398B334509C50Afce5259D42756E

#39963of 53,633
6.8Total CVSS
Vulnerabilities · 1
PT-2010-2263
6.8
2010-03-30
Apple · Macos X · CVE-2010-0505
**Name of the Vulnerable Software and Affected Versions** Apple Mac OS X versions prior to 10.6.3 **Description** The issue is related to a heap-based buffer overflow in the ImageIO component of Apple Mac OS X, which can be triggered by a crafted JP2 (JPEG2000) image. This is due to an incorrect calculation and the `CGImageReadGetBytesAtOffset` function. The overflow can allow remote attackers to execute arbitrary code or cause a denial of service, resulting in an application crash. **Recommendations** For Apple Mac OS X versions prior to 10.6.3, update to version 10.6.3 or later to resolve the issue. As a temporary workaround, consider avoiding the use of JPEG2000 images until the update is applied.