First published: Wed Jan 20 2010(Updated: )
Buffer overflow in CoreAudio in Apple Mac OS X 10.5.8 and 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MP4 audio file.
Credit: product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | =10.5.8 | |
macOS Yosemite | =10.6.2 | |
Apple Mac OS X Server | =10.5.8 | |
Apple Mac OS X Server | =10.6.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0036 has a severity level of high due to its potential for allowing remote code execution.
To address CVE-2010-0036, you should update to the latest version of Mac OS X that is not vulnerable to this issue.
CVE-2010-0036 affects Apple Mac OS X versions 10.5.8 and 10.6.2, as well as their server counterparts.
CVE-2010-0036 allows remote attackers to execute arbitrary code or cause a denial of service through a crafted MP4 audio file.
CVE-2010-0036 remains a risk for users who have not upgraded from the vulnerable versions of Mac OS X.