Attack (Attack ID:319492)

Release Date2010/03/09

Attack NameFILE Apple Mac OS X ImageIO gifGetBandProc GIF Image Handling integer overflow -1 (CVE-2007-1071)

Severity

BUG ID

CVE ID

 

Description

Integer overflow in the gifGetBandProc function in ImageIO in Apple Mac OS X 10.4.8 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image that triggers the overflow during decompression. NOTE: this is a different issue than CVE-2006-3502 and CVE-2006-3503.
Impact:Remote code execution
Affected System:Others
Additional References:BID:22630;CVE-2007-1071

 

Solution

Update vendor's patch.