CVE-2004-0822

Mac OS X 10.2.8, 10.3.4, 10.3.5 - Local Buffer Overflow in Core Foundation Framework

Title source: llm
STIX 2.1

Description

Buffer overflow in The Core Foundation framework (CoreFoundation.framework) in Mac OS X 10.2.8, 10.3.4, and 10.3.5 allows local users to execute arbitrary code via a certain environment variable.

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/11136
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/12491/
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/17295
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/545446
Third Party Advisory, VDB Entry vendor-advisory x_refsource_apple
http://www.securityfocus.com/advisories/7148
Third Party Advisory, US Government Resource third-party-advisory government-resource x_refsource_ciac
http://www.ciac.org/ciac/bulletins/o-212.shtml

Scores

EPSS 0.0053
EPSS Percentile 41.8%

Details

Status published
Products (6)
apple/mac_os_x 10.2.8
apple/mac_os_x 10.3.4
apple/mac_os_x 10.3.5
apple/mac_os_x_server 10.2.8
apple/mac_os_x_server 10.3.4
apple/mac_os_x_server 10.3.5
Published Sep 07, 2004
Tracked Since Feb 18, 2026