First published: Fri May 12 2006(Updated: )
Mail in Apple Mac OS X 10.3.9 and 10.4.6 allows remote attackers to execute arbitrary code via an enriched text e-mail message with "invalid color information" that causes Mail to allocate and initialize arbitrary classes.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | =10.4.6 | |
macOS Yosemite | =10.3.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1450 is considered a critical vulnerability that can allow remote code execution.
The fix for CVE-2006-1450 involves updating Apple Mail to a version that addresses this vulnerability.
CVE-2006-1450 affects Mac OS X versions 10.3.9 and 10.4.6.
CVE-2006-1450 is associated with a remote code execution attack via a malicious enriched text e-mail.
Exploitation of CVE-2006-1450 typically requires the user to open a specially crafted email.