First published: Tue Mar 18 2008(Updated: )
Preview in Apple Mac OS X 10.5.2 uses 40-bit RC4 when saving a PDF file with encryption, which makes it easier for attackers to decrypt the file via brute force methods.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mac OS X Server | =10.5.2 | |
macOS Yosemite | =10.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0994 is classified as a moderate severity vulnerability due to its potential for exploitation through brute force attacks.
To fix CVE-2008-0994, update your Apple Mac OS X to a version that addresses this vulnerability.
CVE-2008-0994 affects PDF files saved with encryption using 40-bit RC4 on affected versions of Apple Mac OS X.
Users of Apple Mac OS X 10.5.2 who encrypt PDF files are at risk for CVE-2008-0994.
CVE-2008-0994 allows an attacker to decrypt PDF files via brute force methods due to weak encryption.