CVE Database
/

CVE-2007-0646

Back to search

CVE-2007-0646

Published: Feb 1, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Format string vulnerability in iMovie HD 6.0.3, and Safari in Apple Mac OS X 10.4 through 10.4.10, allows remote user-assisted attackers to cause a denial of service (crash) via format string specifiers in a filename, which is not properly handled when calling the NSRunCriticalAlertPanel Apple AppKit function.

VendorProductVersions

n/a

n/a

affected
n/a

References

24966
third-party-advisory
x_refsource_SECUNIA
26444
vdb-entry
x_refsource_BID
22326
vdb-entry
x_refsource_BID
TA07-109A
third-party-advisory
x_refsource_CERT
APPLE-SA-2007-11-14
vendor-advisory
x_refsource_APPLE
ADV-2007-3868
vdb-entry
x_refsource_VUPEN
27643
third-party-advisory
x_refsource_SECUNIA
APPLE-SA-2007-04-19
vendor-advisory
x_refsource_APPLE
ADV-2007-1470
vdb-entry
x_refsource_VUPEN
TA07-319A
third-party-advisory
x_refsource_CERT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now