CVE-2013-0971

Apple Mac OS X <10.8.3 - Use After Free

Title source: llm
STIX 2.1

Description

Use-after-free vulnerability in PDFKit in Apple Mac OS X before 10.8.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted ink annotations in a PDF document.

References (1)

Core 1
Core References
Vendor Advisory vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2013/Mar/msg00002.html

Scores

EPSS 0.0184
EPSS Percentile 76.8%

Details

CWE
CWE-399
Status published
Products (17)
apple/mac_os_x 10.6.8
apple/mac_os_x 10.7.0
apple/mac_os_x 10.7.1
apple/mac_os_x 10.7.2
apple/mac_os_x 10.7.3
apple/mac_os_x 10.7.4
apple/mac_os_x 10.7.5
apple/mac_os_x 10.8.0
apple/mac_os_x 10.8.1
apple/mac_os_x 10.8.2
... and 7 more
Published Mar 15, 2013
Tracked Since Feb 18, 2026