Back to search
CVE-2014-1370
Published: Jul 1, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
The byte-swapping implementation in copyfile in Apple OS X before 10.9.4 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds memory access and application crash) via a crafted AppleDouble file in a ZIP archive.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://support.apple.com/kb/HT6296
x_refsource_CONFIRM
1030505
vdb-entry
x_refsource_SECTRACK
APPLE-SA-2014-06-30-2
vendor-advisory
x_refsource_APPLE
20141210 Apple Mac OS X Archive Utility Heap Memory Corruption Vulnerability
third-party-advisory
x_refsource_IDEFENSE
59475
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now