CVE-2006-0391: Low severity Apple iOS and macOS vulnerability
Directory traversal vulnerability in the BOM framework in Mac OS X 10.x before 10.3.9 and 10.4 before 10.4.5 allows user-assisted attackers to overwrite or create arbitrary files via an archive that is handled by BOMArchiveHelper.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0391?
CVE-2006-0391 is considered a moderate severity vulnerability due to its potential to allow unauthorized file manipulation.
How do I fix CVE-2006-0391?
To fix CVE-2006-0391, update your Mac OS X to version 10.3.9 or later for 10.3 and to 10.4.5 or later for 10.4.
What type of vulnerability is CVE-2006-0391?
CVE-2006-0391 is a directory traversal vulnerability impacting the BOM framework in specific versions of Mac OS X.
Is my Mac affected by CVE-2006-0391?
If you are using Mac OS X versions 10.3.x before 10.3.9 or 10.4.x before 10.4.5, your system is vulnerable to CVE-2006-0391.
What can an attacker do with CVE-2006-0391?
An attacker can use CVE-2006-0391 to overwrite or create arbitrary files on a vulnerable system if the user is tricked into opening a malicious archive.