CVE Database
/

CVE-2006-1985

Back to search

CVE-2006-1985

Published: Apr 21, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Heap-based buffer overflow in BOM BOMArchiveHelper 10.4 (6.3) Build 312, as used in Mac OS X 10.4.6 and earlier, allows user-assisted attackers to execute arbitrary code via a crafted archive (such as ZIP) that contains long path names, which triggers an error in the BOMStackPop function.

VendorProductVersions

n/a

n/a

affected
n/a

References

17951
vdb-entry
x_refsource_BID
24819
vdb-entry
x_refsource_OSVDB
ADV-2006-1779
vdb-entry
x_refsource_VUPEN
TA06-132A
third-party-advisory
x_refsource_CERT
1016082
vdb-entry
x_refsource_SECTRACK
APPLE-SA-2006-05-11
vendor-advisory
x_refsource_APPLE
macosx-archivehelper-bo(25945)
vdb-entry
x_refsource_XF
ADV-2006-1452
vdb-entry
x_refsource_VUPEN
17634
vdb-entry
x_refsource_BID
20077
third-party-advisory
x_refsource_SECUNIA
19686
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now