First published: Fri Mar 03 2006(Updated: )
Directory traversal vulnerability in the BOM framework in Mac OS X 10.x before 10.3.9 and 10.4 before 10.4.5 allows user-assisted attackers to overwrite or create arbitrary files via an archive that is handled by BOMArchiveHelper.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | =10.4.3 | |
macOS Yosemite | =10.3.1 | |
macOS Yosemite | =10.3.5 | |
macOS Yosemite | =10.4.1 | |
macOS Yosemite | =10.4.4 | |
macOS Yosemite | =10.3.7 | |
macOS Yosemite | =10.3.6 | |
macOS Yosemite | =10.4 | |
macOS Yosemite | =10.3.8 | |
macOS Yosemite | =10.3.4 | |
macOS Yosemite | =10.3.3 | |
macOS Yosemite | =10.4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0391 is considered a moderate severity vulnerability due to its potential to allow unauthorized file manipulation.
To fix CVE-2006-0391, update your Mac OS X to version 10.3.9 or later for 10.3 and to 10.4.5 or later for 10.4.
CVE-2006-0391 is a directory traversal vulnerability impacting the BOM framework in specific versions of Mac OS X.
If you are using Mac OS X versions 10.3.x before 10.3.9 or 10.4.x before 10.4.5, your system is vulnerable to CVE-2006-0391.
An attacker can use CVE-2006-0391 to overwrite or create arbitrary files on a vulnerable system if the user is tricked into opening a malicious archive.