First published: Thu Nov 30 2006(Updated: )
Stack-based buffer overflow in the Apple Type Services (ATS) server in Mac OS 10.4.8 and earlier allow user-assisted attackers to execute arbitrary code via crafted font files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | <=10.4.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4400 is considered critical due to its potential for remote code execution via crafted font files.
To fix CVE-2006-4400, update your Mac OS to a version later than 10.4.8.
Users running Mac OS X 10.4.8 or earlier are affected by CVE-2006-4400.
CVE-2006-4400 involves stack-based buffer overflow attacks that require user interaction.
The consequences of CVE-2006-4400 can include execution of arbitrary code and system compromise.