First published: Thu Jul 06 2006(Updated: )
The TIFFFetchAnyArray function in ImageIO in Apple OS X 10.4.7 and earlier allows remote user-assisted attackers to cause a denial of service (application crash) via an invalid tag value in a TIFF image, possibly triggering a null dereference. NOTE: This is a different issue than CVE-2006-1469.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mac OS X Server | <=10.4.7 | |
macOS Yosemite | <=10.4.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-3356 is classified as a denial of service vulnerability that causes application crashes.
To fix CVE-2006-3356, update your Apple OS X to the latest version that is beyond 10.4.7.
CVE-2006-3356 affects Apple OS X versions 10.4.7 and earlier, including Mac OS X Server.
Exploiting CVE-2006-3356 can lead to a denial of service by causing the application to crash.
CVE-2006-3356 is distinct from CVE-2006-1469, despite both being related to image processing issues.