CVE-2010-1801

apple coregraphics: Sicherheitsluecke

Description

Heap-based buffer overflow in CoreGraphics in Apple Mac OS X 10.5.8 and 10.6.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF file.

Affected operating systems

  • macos

    apple / mac_os_x10.5.8

  • macos

    apple / mac_os_x10.6.4

  • macos

    apple / mac_os_x_server10.5.8

  • macos

    apple / mac_os_x_server10.6.4

Affected products

The following versions are affected. Older releases of the same product line are also vulnerable unless stated otherwise.

applecoregraphics

Metrics

88.0 %
Critical — this CVE ranks in the top fifth of all CVEs scored today (rank ≥ 80%).
Show all metrics
Severity
none
no public PoC known
3.3 %
Moderate — model estimates 1-10% exploitation likelihood.
Published
2010-08-25 19:00 UTC

References & sources