CVE-2005-1933: High severity Apple iOS and macOS vulnerability
Published Jun 9, 2005
·Updated
Dashboard in Apple Mac OS X Tiger 10.4 allows attackers to execute arbitrary commands by overriding the behavior of system widgets via a user widget with the same bundle identifier (CFBundleIdentifier), a different vulnerability than CVE-2005-1474.
Affected Software
1 affected component
Apple iOS and macOS=10.4
Event History
Jun 9, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1933?
CVE-2005-1933 has a medium severity rating due to the potential for arbitrary command execution.
2
How do I fix CVE-2005-1933?
To mitigate CVE-2005-1933, avoid using untrusted widgets and ensure that system widgets have unique bundle identifiers.
3
Which versions of Mac OS X are affected by CVE-2005-1933?
CVE-2005-1933 specifically affects Mac OS X Tiger 10.4.
4
What type of attack does CVE-2005-1933 enable?
CVE-2005-1933 enables attackers to execute arbitrary commands on the system.
5
How can I protect my system from CVE-2005-1933?
To protect against CVE-2005-1933, regularly update your system and restrict the usage of unknown widgets.