CVE-2006-4400: Buffer Overflow
Published Nov 30, 2006
·Updated
Stack-based buffer overflow in the Apple Type Services (ATS) server in Mac OS 10.4.8 and earlier allow user-assisted attackers to execute arbitrary code via crafted font files.
Affected Software
1 affected component
Apple iOS and macOS<=10.4.8
Event History
Nov 30, 2006
CVE Published
04:28 PM
Data Sourced
via NVD·04:28 PM
DescriptionSeverityAffected Software
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-4400?
CVE-2006-4400 is considered critical due to its potential for remote code execution via crafted font files.
2
How do I fix CVE-2006-4400?
To fix CVE-2006-4400, update your Mac OS to a version later than 10.4.8.
3
Who is affected by CVE-2006-4400?
Users running Mac OS X 10.4.8 or earlier are affected by CVE-2006-4400.
4
What type of attack does CVE-2006-4400 involve?
CVE-2006-4400 involves stack-based buffer overflow attacks that require user interaction.
5
What are the consequences of CVE-2006-4400?
The consequences of CVE-2006-4400 can include execution of arbitrary code and system compromise.