CVE-2005-2522

Safari in Mac OS X 10.4-10.4.2 - Remote Code Execution via PDF URL Links

Title source: manual
STIX 2.1

Description

Safari in WebKit in Mac OS X 10.4 to 10.4.2 directly accesses URLs within PDF files without the normal security checks, which allows remote attackers to execute arbitrary code via links in a PDF file.

References (4)

Core 4
Core References
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA05-229A.html
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/420316
Patch, Vendor Advisory vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2005/Aug/msg00000.html
Patch, Vendor Advisory vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html

Scores

EPSS 0.0430
EPSS Percentile 90.1%

Details

Status published
Products (4)
apple/mac_os_x 10.4
apple/mac_os_x 10.4.1
apple/mac_os_x 10.4.2
apple/safari
Published Aug 19, 2005
Tracked Since Feb 18, 2026