PT-2006-4248 · Apple · Os X
Published
2006-07-06
·
Updated
2017-07-20
·
CVE-2006-3356
CVSS v2.0
2.6
Low
| Vector | AV:N/AC:H/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Apple OS X versions 10.4.7 and earlier
Description
The issue allows remote user-assisted attackers to cause a denial of service, potentially leading to an application crash, by exploiting an invalid tag value in a TIFF image. This could possibly trigger a null dereference.
Recommendations
For Apple OS X versions 10.4.7 and earlier, consider updating to a newer version to mitigate the risk of exploitation. As a temporary workaround, restrict the handling of TIFF images from untrusted sources to minimize the risk of triggering the denial of service.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Os X