CVE-2006-3505: High severity Apple iOS and macOS vulnerability
Published Aug 3, 2006
·Updated
WebKit in Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML document that causes WebKit to access an object that has already been deallocated.
Affected Software
4 affected components
Apple iOS and macOS=10.4.7
Apple Mac OS X Server=10.3.9
Apple iOS and macOS=10.3.9
Apple Mac OS X Server=10.4.7
Event History
Aug 3, 2006
CVE Published
01:04 AM
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-3505?
CVE-2006-3505 is classified as a denial of service vulnerability that could potentially allow execution of arbitrary code.
2
How do I fix CVE-2006-3505?
To fix CVE-2006-3505, update your Apple Mac OS X to the latest version that addresses this vulnerability.
3
Which versions of Mac OS X are affected by CVE-2006-3505?
CVE-2006-3505 affects Apple Mac OS X versions 10.3.9 and 10.4.7.
4
What type of attack does CVE-2006-3505 facilitate?
CVE-2006-3505 facilitates a denial of service attack by causing a crash through a crafted HTML document.
5
Can CVE-2006-3505 allow for remote code execution?
Yes, CVE-2006-3505 may allow attackers to execute arbitrary code remotely under certain conditions.