Heap-based buffer overflow in BOM BOMArchiveHelper 10.4 (6.3) Build 312, as used in Mac OS X 10.4.6 and previous versions, allows user-assisted malicious users to execute arbitrary code via a crafted archive (such as ZIP) that contains long path names, which triggers an error in the BOMStackPop function.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apple safari 2.0 |
||
apple safari 2.0.1 |
||
apple safari 2.0.2 |
||
apple safari 2.0.3 |
||
apple mac os x 10.3 |
||
apple mac os x 10.3.1 |
||
apple mac os x 10.3.8 |
||
apple mac os x 10.3.9 |
||
apple mac os x 10.4.6 |
||
apple mac os x server 10.3 |
||
apple mac os x server 10.3.8 |
||
apple mac os x server 10.3.9 |
||
apple mac os x server 10.4.6 |
||
apple mac os x 10.3.2 |
||
apple mac os x 10.3.3 |
||
apple mac os x 10.4 |
||
apple mac os x 10.4.1 |
||
apple mac os x server 10.3.1 |
||
apple mac os x server 10.3.2 |
||
apple mac os x server 10.3.3 |
||
apple mac os x server 10.4 |
||
apple mac os x server 10.4.1 |
||
apple mac os x 10.3.4 |
||
apple mac os x 10.3.5 |
||
apple mac os x 10.4.2 |
||
apple mac os x 10.4.3 |
||
apple mac os x server 10.3.4 |
||
apple mac os x server 10.3.5 |
||
apple mac os x server 10.4.2 |
||
apple mac os x server 10.4.3 |
||
apple mac os x 10.3.6 |
||
apple mac os x 10.3.7 |
||
apple mac os x 10.4.4 |
||
apple mac os x 10.4.5 |
||
apple mac os x server 10.3.6 |
||
apple mac os x server 10.3.7 |
||
apple mac os x server 10.4.4 |
||
apple mac os x server 10.4.5 |