5.1
CVSSv2

CVE-2006-1985

Published: 21/04/2006 Updated: 20/07/2017
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 515
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Heap-based buffer overflow in BOM BOMArchiveHelper 10.4 (6.3) Build 312, as used in Mac OS X 10.4.6 and previous versions, allows user-assisted malicious users to execute arbitrary code via a crafted archive (such as ZIP) that contains long path names, which triggers an error in the BOMStackPop function.

Vulnerable Product Search on Vulmon Subscribe to Product

apple safari 2.0

apple safari 2.0.1

apple safari 2.0.2

apple safari 2.0.3

apple mac os x 10.3

apple mac os x 10.3.1

apple mac os x 10.3.8

apple mac os x 10.3.9

apple mac os x 10.4.6

apple mac os x server 10.3

apple mac os x server 10.3.8

apple mac os x server 10.3.9

apple mac os x server 10.4.6

apple mac os x 10.3.2

apple mac os x 10.3.3

apple mac os x 10.4

apple mac os x 10.4.1

apple mac os x server 10.3.1

apple mac os x server 10.3.2

apple mac os x server 10.3.3

apple mac os x server 10.4

apple mac os x server 10.4.1

apple mac os x 10.3.4

apple mac os x 10.3.5

apple mac os x 10.4.2

apple mac os x 10.4.3

apple mac os x server 10.3.4

apple mac os x server 10.3.5

apple mac os x server 10.4.2

apple mac os x server 10.4.3

apple mac os x 10.3.6

apple mac os x 10.3.7

apple mac os x 10.4.4

apple mac os x 10.4.5

apple mac os x server 10.3.6

apple mac os x server 10.3.7

apple mac os x server 10.4.4

apple mac os x server 10.4.5

Exploits

source: wwwsecurityfocuscom/bid/17634/info Apple Mac OS X is reported prone to multiple security vulnerabilities These issue affect Mac OS X and various applications including Safari, Preview, Finder, QuickTime, and BOMArchiveHelper A remote attacker may exploit these issues to execute arbitrary code and/or trigger a denial-of-servic ...