CVE-2007-0646

Format string vulnerability in iMovie HD 6.0.3, and Safari in Apple Mac OS X 10.4 through 10.4.10, allows remote user-assisted attackers to cause a denial of service (crash) via format string specifiers in a filename, which is not properly handled when calling the NSRunCriticalAlertPanel Apple AppKit function.
Configurations

Configuration 1


Information

Published : 2007-02-01 12:28

Updated : 2011-03-07 05:00


NVD link : CVE-2007-0646

Mitre link : CVE-2007-0646

Products Affected
No products.
CWE
CWE-134

Use of Externally-Controlled Format String