A stack-based buffer overflow in Apple Type Services server may allow attackers to execute arbitrary code.
The Apple Type Services server fails to properly handle malformed font files possibly allowing a stack-based buffer overflow to occur.
Note that according to Apple, font files are processed when opened or previewed in Apple Finder.
A attacker may be able to execute arbitrary code.
This vulnerability was reported in Apple Security Update 2006-007.
This document was written by Jeff Gennari based on information from Apple.
|Date First Published:||2006-11-29|
|Date Last Updated:||2006-11-30 19:40 UTC|