CoreText in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font in a PDF document.
                
            References
                    | Link | Resource | 
|---|---|
| http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html | Vendor Advisory | 
| http://support.apple.com/kb/HT4435 | Patch Vendor Advisory | 
| http://www.securitytracker.com/id?1024723 | |
| http://www.securityfocus.com/bid/44808 | 
Configurations
                    Configuration 1 (hide)
                                
                                
  | 
                        
Configuration 2 (hide)
                                
                                
  | 
                        
Information
                Published : 2010-11-15 15:00
Updated : 2011-01-11 22:49
NVD link : CVE-2010-1837
Mitre link : CVE-2010-1837
JSON object : View
CWE
                
                    
                        
                        CWE-119
                        
            Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
                apple
- mac_os_x
 - mac_os_x_server
 


