CVE-2005-0126: High severity apple mac os x vulnerability
Published Jan 29, 2005
·Updated
ColorSync on Mac OS X 10.3.7 and 10.3.8 allows attackers to execute arbitrary code via malformed ICC color profiles that modify the heap.
Affected Software
5 affected components
Apple iOS and macOS=10.2.8
Apple Mac OS X Server=10.3.7
Apple iOS and macOS=10.3.7
Apple iOS and macOS=10.3.8
Apple Mac OS X Server=10.2.8
Remediation
Patch Available
Event History
Jan 29, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0126?
CVE-2005-0126 is considered to have a high severity as it allows attackers to execute arbitrary code.
2
How do I fix CVE-2005-0126?
To fix CVE-2005-0126, update your Mac OS X to a version that has addressed this vulnerability.
3
Which versions of Mac OS X are affected by CVE-2005-0126?
CVE-2005-0126 affects Mac OS X versions 10.3.7 and 10.3.8, as well as 10.2.8.
4
What type of attack does CVE-2005-0126 enable?
CVE-2005-0126 enables attackers to execute arbitrary code through the use of malformed ICC color profiles.
5
Is CVE-2005-0126 related to any specific software component?
CVE-2005-0126 is related to the ColorSync component within Mac OS X.