|
|
|
Vulnerability Note VU#835936Apple Type Services server font processing buffer overflowOverviewA stack-based buffer overflow in Apple Type Services server may allow attackers to execute arbitrary code.I. DescriptionThe Apple Type Services server fails to properly handle malformed font files possibly allowing a stack-based buffer overflow to occur.Note that according to Apple, font files are processed when opened or previewed in Apple Finder.
Apple advises all users to apply Apple Security Update 2006-007, as it fixes this and other critical security flaws.
References
This vulnerability was reported in Apple Security Update 2006-007. This document was written by Jeff Gennari based on information from Apple.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
||||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||