Executive Summary

Informations
Name CVE-2008-0987 First vendor Publication 2008-03-18
Vendor Cve Last vendor Modification 2017-08-08

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:M/Au:N/C:P/I:P/A:P)
Cvss Base Score 6.8 Attack Range Network
Cvss Impact Score 6.4 Attack Complexity Medium
Cvss Expoit Score 8.6 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

Stack-based buffer overflow in Image Raw in Apple Mac OS X 10.5.2, and Digital Camera RAW Compatibility before Update 2.0 for Aperture 2 and iPhoto 7.1.2, allows remote attackers to execute arbitrary code via a crafted Adobe Digital Negative (DNG) image.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0987

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 1
Application 1

OpenVAS Exploits

Date Description
2009-11-17 Name : Mac OS X Version
File : nvt/macosx_version.nasl

Open Source Vulnerability Database (OSVDB)

Id Description
43389 Apple Multiple Products Image Raw Adobe Digital Negative (DNG) Image Handlin...

Nessus® Vulnerability Scanner

Date Description
2008-03-19 Name : The remote host is missing a Mac OS X update that fixes various security issues.
File : macosx_SecUpd2008-002.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

Source Url
APPLE http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html
http://lists.apple.com/archives/security-announce/2008/Mar/msg00003.html
BID http://www.securityfocus.com/bid/28304
http://www.securityfocus.com/bid/28363
CERT http://www.us-cert.gov/cas/techalerts/TA08-079A.html
CONFIRM http://docs.info.apple.com/article.html?artnum=307562
http://support.apple.com/kb/HT1232
SECTRACK http://www.securitytracker.com/id?1019659
http://www.securitytracker.com/id?1019683
http://www.securitytracker.com/id?1019684
SECUNIA http://secunia.com/advisories/29420
http://secunia.com/advisories/29469
VUPEN http://www.vupen.com/english/advisories/2008/0924/references
http://www.vupen.com/english/advisories/2008/0957/references
XF https://exchange.xforce.ibmcloud.com/vulnerabilities/41294

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
Date Informations
2020-05-23 00:21:19
  • Multiple Updates
2017-08-08 09:23:53
  • Multiple Updates
2016-06-28 23:58:31
  • Multiple Updates
2016-04-26 17:09:42
  • Multiple Updates
2014-02-17 10:43:53
  • Multiple Updates
2013-09-01 17:19:58
  • Multiple Updates
2013-05-11 00:10:13
  • Multiple Updates