PT-2017-2102 · Apple · Macos X Server+1
Joseph Spiros
·
Published
2017-04-13
·
Updated
2017-04-21
·
CVE-2010-1816
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Apple Mac OS X versions 10.6 through 10.6.3
Apple Mac OS X Server versions 10.6 through 10.6.3
Description
The issue is caused by a buffer overflow in the ImageIO class, allowing remote attackers to execute arbitrary code or cause a denial of service via a crafted image. This can lead to the execution of arbitrary code or a crash.
Recommendations
For Apple Mac OS X versions 10.6 through 10.6.3, update to a version later than 10.6.3 to resolve the issue.
For Apple Mac OS X Server versions 10.6 through 10.6.3, update to a version later than 10.6.3 to resolve the issue.
As a temporary workaround, consider restricting the use of the ImageIO class until a patch is available.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Macos X
Macos X Server