First published: Fri May 12 2006(Updated: )
LaunchServices in Apple Mac OS X 10.4.6 allows remote attackers to cause Safari to launch unsafe content via long file name extensions, which prevents Download Validation from determining which application will be used to open the file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | =10.4.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1447 is considered a moderate severity vulnerability that can lead to potential exploitation through unsafe content.
CVE-2006-1447 allows remote attackers to exploit Safari by launching unsafe content due to long file name extensions.
CVE-2006-1447 specifically affects Mac OS X version 10.4.6.
Users can mitigate CVE-2006-1447 by not opening files with suspicious or excessively long file name extensions.
There is no specific patch for CVE-2006-1447, so users should consider upgrading to a later version of Mac OS X.