PT-2006-4248 · Apple · Os X

Published

2006-07-06

·

Updated

2017-07-20

·

CVE-2006-3356

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Apple OS X versions 10.4.7 and earlier
Description The issue allows remote user-assisted attackers to cause a denial of service, potentially leading to an application crash, by exploiting an invalid tag value in a TIFF image. This could possibly trigger a null dereference.
Recommendations For Apple OS X versions 10.4.7 and earlier, consider updating to a newer version to mitigate the risk of exploitation. As a temporary workaround, restrict the handling of TIFF images from untrusted sources to minimize the risk of triggering the denial of service.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-3356

Affected Products

Os X