PT-2006-2455 · Apple · Safari+1

Published

2006-05-12

·

Updated

2017-07-20

·

CVE-2006-1447

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Apple Mac OS X version 10.4.6
Description The issue allows remote attackers to cause Safari to launch unsafe content via long file name extensions. This occurs because the long file name extensions prevent Download Validation from determining which application will be used to open the file.
Recommendations For Apple Mac OS X version 10.4.6, consider restricting the handling of long file name extensions to prevent Safari from launching unsafe content until a fix is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-1447

Affected Products

Macos X
Safari