CVE-2009-0145: Code Injection
CoreGraphics in Apple Mac OS X 10.4.11 and 10.5 before 10.5.7, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF file that triggers memory corruption.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-0145?
CVE-2009-0145 has a critical severity level due to its potential to allow remote code execution and denial of service.
How do I fix CVE-2009-0145?
To fix CVE-2009-0145, update your Apple Mac OS X or iPhone OS to versions that have patched this vulnerability.
What are the affected versions related to CVE-2009-0145?
CVE-2009-0145 affects Apple Mac OS X versions 10.4.11 and 10.5 before 10.5.7, as well as certain versions of iPhone OS.
What kind of attacks can exploit CVE-2009-0145?
CVE-2009-0145 can be exploited through specially crafted PDF files that cause memory corruption.
Is there a workaround for CVE-2009-0145?
There are no specific workarounds for CVE-2009-0145 other than applying the necessary software updates.