Unspecified vulnerability in the "compression state handling" in Bom for Apple Mac OS X 10.3.9 and 10.4.7 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted Zip archive.
                
            References
                    | Link | Resource | 
|---|---|
| http://lists.apple.com/archives/security-announce/2006//Aug/msg00000.html | Vendor Advisory | 
| http://secunia.com/advisories/21253 | Patch Vendor Advisory | 
| http://www.kb.cert.org/vuls/id/514740 | US Government Resource | 
| http://www.osvdb.org/27735 | |
| http://www.securityfocus.com/bid/19289 | Exploit Patch | 
| http://www.us-cert.gov/cas/techalerts/TA06-214A.html | US Government Resource | 
| http://www.vupen.com/english/advisories/2006/3101 | Vendor Advisory | 
| http://lists.apple.com/archives/security-announce/2006//Aug/msg00000.html | Vendor Advisory | 
| http://secunia.com/advisories/21253 | Patch Vendor Advisory | 
| http://www.kb.cert.org/vuls/id/514740 | US Government Resource | 
| http://www.osvdb.org/27735 | |
| http://www.securityfocus.com/bid/19289 | Exploit Patch | 
| http://www.us-cert.gov/cas/techalerts/TA06-214A.html | US Government Resource | 
| http://www.vupen.com/english/advisories/2006/3101 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    21 Nov 2024, 00:13
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://lists.apple.com/archives/security-announce/2006//Aug/msg00000.html - Vendor Advisory | |
| References | () http://secunia.com/advisories/21253 - Patch, Vendor Advisory | |
| References | () http://www.kb.cert.org/vuls/id/514740 - US Government Resource | |
| References | () http://www.osvdb.org/27735 - | |
| References | () http://www.securityfocus.com/bid/19289 - Exploit, Patch | |
| References | () http://www.us-cert.gov/cas/techalerts/TA06-214A.html - US Government Resource | |
| References | () http://www.vupen.com/english/advisories/2006/3101 - Vendor Advisory | 
Information
                Published : 2006-08-02 16:04
Updated : 2025-04-03 01:03
NVD link : CVE-2006-3497
Mitre link : CVE-2006-3497
CVE.ORG link : CVE-2006-3497
JSON object : View
Products Affected
                apple
- mac_os_x
- mac_os_x_server
CWE
                