Title: Apple Mac OS X QuickDraw _GetSrcBits32ARGB() Function DoS
Info
Disclosure
Jan 23, 2007
Discovery
Unknown
Dates
Exploit
Jan 23, 2007
Solution
Unknown
Description
Mac OS X contains a flaw that may allow a remote denial of service. The issue is triggered when an application uses the QuickDraw component to open a specially crafted PICT file with a malformed ARGB record, and will result in loss of availability for the application.
Classification
Location:
Remote / Network Access
Attack Type:
Denial of Service,
Input Manipulation
Impact:
Loss of Availability
Exploit:
Exploit Public
Disclosure:
OSVDB Verified
Solution
Upgrade to version 10.4.9 or higher, as it has been reported to fix this vulnerability. In addition, Apple has released a patch for some older versions.