CVE-2009-0012: Buffer Overflow
Published Feb 13, 2009
·Updated
Heap-based buffer overflow in CoreText in Apple Mac OS X 10.5.6 allows remote attackers to execute arbitrary code via a crafted Unicode string.
Affected Software
2 affected components
Apple iOS and macOS=10.5.6
Apple Mac OS X Server=10.5.6
Remediation
Event History
Feb 13, 2009
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·12:30 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-0012?
CVE-2009-0012 is considered a critical severity vulnerability as it allows remote attackers to execute arbitrary code.
2
How do I fix CVE-2009-0012?
To fix CVE-2009-0012, users should update to a patched version of Mac OS X that addresses this vulnerability.
3
What systems are affected by CVE-2009-0012?
CVE-2009-0012 affects Mac OS X 10.5.6 and Apple Mac OS X Server 10.5.6.
4
What does CVE-2009-0012 exploit?
CVE-2009-0012 exploits a heap-based buffer overflow in the CoreText component.
5
What kind of attack can CVE-2009-0012 enable?
CVE-2009-0012 can enable remote attackers to execute arbitrary code on affected systems.