PT-2010-3071 · Apple+1 · Ichat+2

Published

2010-06-17

·

Updated

2010-06-17

·

CVE-2010-1374

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions iChat in Apple Mac OS X versions 10.5.8, and 10.6 through 10.6.3
Description A directory traversal issue exists when AIM is used, allowing remote attackers to create arbitrary files via directory traversal sequences in an inline image-transfer operation.
Recommendations For Mac OS X 10.5.8, update to a version that contains a fix for this issue. For Mac OS X 10.6 through 10.6.3, update to Mac OS X 10.6.4 or later to resolve the issue.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-1374

Affected Products

Aim
Macos X
Ichat