CVE-2005-1342

Apple Terminal 1.4.4 - Command Injection

Title source: llm
STIX 2.1

Description

The x-man-page: URI handler for Apple Terminal 1.4.4 in Mac OS X 10.3.9 does not cleanse terminal escape sequences, which allows remote attackers to execute arbitrary commands.

References (8)

Core 8
Core References
Exploit, Vendor Advisory x_refsource_misc
http://remahl.se/david/vuln/011/
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/13480
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA05-136A.html
Vendor Advisory vdb-entry x_refsource_osvdb
http://www.osvdb.org/16084
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/15227
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/356070
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2005/0455
Patch, Vendor Advisory vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2005/May/msg00001.html

Scores

EPSS 0.0521
EPSS Percentile 91.7%

Details

Status published
Products (11)
apple/mac_os_x 10.3
apple/mac_os_x 10.3.1
apple/mac_os_x 10.3.2
apple/mac_os_x 10.3.3
apple/mac_os_x 10.3.4
apple/mac_os_x 10.3.5
apple/mac_os_x 10.3.6
apple/mac_os_x 10.3.7
apple/mac_os_x 10.3.8
apple/mac_os_x 10.3.9
... and 1 more
Published May 04, 2005
Tracked Since Feb 18, 2026