PT-2004-1884 · Apple · Corefoundation+1
Published
2004-09-07
·
Updated
2017-07-11
·
CVE-2004-0822
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Mac OS X versions 10.2.8, 10.3.4, and 10.3.5
Description
A buffer overflow issue in the Core Foundation framework allows local users to execute arbitrary code via a certain environment variable.
Recommendations
For Mac OS X version 10.2.8, update to a version that includes the fix for this issue.
For Mac OS X version 10.3.4, update to a version that includes the fix for this issue.
For Mac OS X version 10.3.5, update to a version that includes the fix for this issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Corefoundation
Macos X