CVE-2006-4402: Buffer Overflow
Published Nov 30, 2006
·Updated
Heap-based buffer overflow in the Finder in Apple Mac OS X 10.4.8 and earlier allows user-assisted remote attackers to execute arbitrary code by browsing directories containing crafted .DSStore files.
Affected Software
1 affected component
Apple iOS and macOS<=10.4.8
Event History
Nov 30, 2006
CVE Published
04:28 PM
Data Sourced
via NVD·04:28 PM
DescriptionSeverityAffected Software
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-4402?
CVE-2006-4402 is classified as a high severity vulnerability due to the potential for arbitrary code execution.
2
How do I fix CVE-2006-4402?
To fix CVE-2006-4402, users should update their Mac OS X to version 10.4.9 or later.
3
What type of vulnerability is CVE-2006-4402?
CVE-2006-4402 is a heap-based buffer overflow vulnerability.
4
Who is affected by CVE-2006-4402?
CVE-2006-4402 affects users of Apple Mac OS X 10.4.8 and earlier.
5
What causes CVE-2006-4402?
CVE-2006-4402 is caused by the Finder's handling of crafted .DS_Store files in directories.