CVE-2007-1071

Apple Mac OS X 10.4.8 - DoS/Arbitrary Code Execution

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-1071. PoCs published by Tom Ferris.

AI-analyzed exploit summary The exploit describes an integer overflow vulnerability in Apple Mac OS X ImageIO when processing malformed .gif files, leading to a denial-of-service or potential arbitrary code execution. The provided details include crash analysis and stack trace but no functional exploit code.

Description

Integer overflow in the gifGetBandProc function in ImageIO in Apple Mac OS X 10.4.8 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image that triggers the overflow during decompression. NOTE: this is a different issue than CVE-2006-3502 and CVE-2006-3503.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Tom Ferris · textdososx
https://www.exploit-db.com/exploits/29620

The exploit describes an integer overflow vulnerability in Apple Mac OS X ImageIO when processing malformed .gif files, leading to a denial-of-service or potential arbitrary code execution. The provided details include crash analysis and stack trace but no functional exploit code.

Classification
Writeup 90%
Attack Type
Dos
Complexity
Moderate
Reliability
Theoretical
Target: Apple Mac OS X ImageIO (OSX 10.4.8 and prior)
No auth needed
Prerequisites: A malformed .gif file · Victim interaction (e.g., opening the file in Safari)
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (10)

Core 10
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/24479
Various Sources x_refsource_misc
http://security-protocols.com/sp-x39-advisory.php
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/22630
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA07-072A.html
Mailing List vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2007/Mar/msg00002.html
Vendor Advisory x_refsource_confirm
http://docs.info.apple.com/article.html?artnum=305214
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34854
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/559444
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/0930
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1017758

Scores

EPSS 0.1824
EPSS Percentile 96.9%

Details

Status published
Products (2)
apple/mac_os_x 10.4.8
apple/mac_os_x_server 10.4.8
Published Feb 22, 2007
Tracked Since Feb 18, 2026