Secunia Logo
 
CVE Reference: CVE-2006-1443
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-1443

Description:
Integer underflow in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4.6 allows context-dependent attackers to execute arbitrary code via unspecified vectors involving conversions from string to file system representation within (1) CFStringGetFileSystemRepresentation or (2) getFileSystemRepresentation:maxLength:withPath in NSFileManager, and possibly other similar API functions.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/26408

ST
  1016080

SAID
  Secunia Advisory: SA20077

OSVDB
  25587

CERT
  http://www.us-cert.gov/cas/techalerts/TA06-132A.html

BID
  17951

APPLE
  http://lists.apple.com/archives/security-announce/2006/May/msg00003.html


Return to the previous page.