Alert: PDF Vulnerability in Mac OS X
| Summary |
| Mac OS X is “a Unix operating system built from the XNU kernel. Mac OS X provides all the standard Unix capabilities and tools with an additional GUI component”.Remote exploitation of an integer overflow vulnerability in Apple Inc.’s Mac OS X could allow an attacker to execute arbitrary code with the privileges of the currently logged in user.
Vulnerable Systems: This vulnerability exists due to the way PDF files containing Type 1 fonts are handled. When processing a font with an overly large length, integer overflow could occur. This issue leads to heap corruption which can allow for arbitrary code execution. Analysis: Vendor response: Published by SecuriTeam. Stay Safe Online! |