CVE Vulnerabilities

CVE-2006-1552

Published: Mar 31, 2006 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Integer overflow in ImageIO in Apple Mac OS X 10.4 up to 10.4.5 allows remote attackers to cause a denial of service (crash) via a crafted JPEG image with malformed JPEG metadata, as demonstrated using Safari, aka Deja-Doom.

Affected Software

Name Vendor Start Version End Version
Safari Apple 1.0 (including) 1.0 (including)
Safari Apple 1.1 (including) 1.1 (including)
Safari Apple 1.2 (including) 1.2 (including)
Safari Apple 1.2.1 (including) 1.2.1 (including)
Safari Apple 1.2.2 (including) 1.2.2 (including)
Safari Apple 1.2.3 (including) 1.2.3 (including)
Safari Apple 1.3 (including) 1.3 (including)
Safari Apple 2.0 (including) 2.0 (including)
Safari Apple 2.0.1 (including) 2.0.1 (including)
Safari Apple 2.0.2 (including) 2.0.2 (including)
Safari Apple 2.0_pre (including) 2.0_pre (including)
Safari Apple beta2 (including) beta2 (including)

References