First published: Fri May 01 2009(Updated: )
Multiple integer overflows in the (1) cdf_read_property_info and (2) cdf_read_sat functions in file before 5.02.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Files | <5.02 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0947 is considered to have a critical severity rating due to potential memory corruption leading to remote code execution.
To mitigate CVE-2009-0947, upgrade to a version of Apple Files that is 5.02 or later.
CVE-2009-0947 is caused by multiple integer overflows in the cdf_read_property_info and cdf_read_sat functions.
Apple Files versions before 5.02 are affected by CVE-2009-0947.
Yes, CVE-2009-0947 can potentially be exploited remotely, allowing attackers to execute arbitrary code.