header-logo
Suggest Exploit
vendor:
Mac OS X QuickDraw
by:
Unknown
7.5
CVSS
HIGH
Memory-corruption vulnerability
Unknown
CWE
Product Name: Mac OS X QuickDraw
Affected Version From: Mac OS X 10.4.8
Affected Version To: Unknown (potentially affects other versions since System 6.0.4)
Patch Exists: NO
Related CWE: Not specified
CPE: Not specified
Metasploit:
Other Scripts:
Platforms Tested:
Unknown

Mac OS X QuickDraw Remote Memory-Corruption Vulnerability

The vulnerability exists in Mac OS X QuickDraw due to its failure to handle malformed PICT image files correctly. This can be exploited by remote attackers to corrupt memory and crash the affected software. It may also potentially allow the execution of arbitrary machine code, although this has not been confirmed.

Mitigation:

No specific mitigation or remediation details provided
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/22207/info

Mac OS X QuickDraw is prone to a remote memory-corruption vulnerability because the software fails to properly handle malformed PICT image files.

Successfully exploiting this issue allows remote attackers to corrupt memory and crash the affected software. Attackers may also be able to execute arbitrary machine code, but this has not been confirmed.

Mac OS X 10.4.8 is vulnerable to this issue; other versions are also likely affected, since the vulnerable component has been included in Apple operating systems since System 6.0.4 

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/29509.pct