Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2010-1836

Quick assessment

Affected
n/a n/a
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Apple Mac OS X 是一款使用在Mac机器上的操作系统,基于BSD系统。 Apple Mac OS X 10.5.8版本以及10.6.5之前的10.6.x版本中的CoreGraphics中存在基于栈的缓冲区溢出漏洞。远程攻击者可以借助特制PDF文档执行任意代码或者导致拒绝服务(应用程序崩溃)。

AI Predicted 9.8 Difficulty: Trivial EPSS 3.32% · P88
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2010-1836

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
Stack-based buffer overflow in CoreGraphics in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Apple Mac OS X CoreGraphics栈缓冲区溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Apple Mac OS X 是一款使用在Mac机器上的操作系统,基于BSD系统。 Apple Mac OS X 10.5.8版本以及10.6.5之前的10.6.x版本中的CoreGraphics中存在基于栈的缓冲区溢出漏洞。远程攻击者可以借助特制PDF文档执行任意代码或者导致拒绝服务(应用程序崩溃)。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2010-1836

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2010-1836

登录查看更多情报信息。

Vendor Advisories for CVE-2010-1836 (2)

Mailing List Discussions for CVE-2010-1836 (1)

Same Patch Batch · n/a · 2010-11-15 · 18 CVEs total

CVE-2010-1834 Apple Mac OS X CFNetwork输入验证漏洞
CVE-2010-2892 LANDesk Management Gateway 'gsb/drivers.php'代码注入漏洞
CVE-2010-2638 IBM WebSphere MQ拒绝服务漏洞
CVE-2010-0113 Symantec Norton Mobile Security敏感信息泄露漏洞
CVE-2010-1842 Apple Mac OS X Appkit栈缓冲区溢出漏洞
CVE-2010-1841 Apple Mac OS X Disk Images输入验证漏洞
CVE-2010-1840 Apple Mac OS X目录服务栈缓冲区溢出漏洞
CVE-2010-1838 Apple Mac OS X Directory Services授权问题漏洞
CVE-2010-1837 Apple Mac OS X CoreText输入验证漏洞
CVE-2010-1378 Apple Mac OS X OpenSSL加密问题漏洞
CVE-2010-1833 Apple Mac OS X Type Services资源管理错误漏洞
CVE-2010-1832 Apple Mac OS X Type Services栈缓冲区溢出漏洞
CVE-2010-1831 Apple Mac OS X Type Services缓冲区溢出漏洞
CVE-2010-1830 Apple Mac OS X共享设计错误漏洞
CVE-2010-1829 Apple Mac OS X AFP Server目录遍历漏洞
CVE-2010-1828 Apple Mac OS X AFP Server输入验证漏洞
CVE-2010-1803 Apple Mac OS X Time Machine设计错误漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2010-1836

No comments yet


Leave a comment