Show plain JSON{"id": "CVE-2009-2804", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 6.8, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:P", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "MEDIUM", "availabilityImpact": "PARTIAL", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 6.4, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}]}, "published": "2009-09-14T16:30:00.267", "references": [{"url": "http://lists.apple.com/archives/security-announce/2009/Nov/msg00001.html", "source": "cve@mitre.org"}, {"url": "http://lists.apple.com/archives/security-announce/2009/Sep/msg00004.html", "source": "cve@mitre.org"}, {"url": "http://osvdb.org/57949", "source": "cve@mitre.org"}, {"url": "http://secunia.com/advisories/36701", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://secunia.com/advisories/37346", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://support.apple.com/kb/HT3865", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://support.apple.com/kb/HT3949", "source": "cve@mitre.org"}, {"url": "http://www.securityfocus.com/bid/36357", "source": "cve@mitre.org"}, {"url": "http://www.vupen.com/english/advisories/2009/3217", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53166", "source": "cve@mitre.org"}, {"url": "http://lists.apple.com/archives/security-announce/2009/Nov/msg00001.html", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://lists.apple.com/archives/security-announce/2009/Sep/msg00004.html", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://osvdb.org/57949", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://secunia.com/advisories/36701", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://secunia.com/advisories/37346", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://support.apple.com/kb/HT3865", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://support.apple.com/kb/HT3949", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.securityfocus.com/bid/36357", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.vupen.com/english/advisories/2009/3217", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53166", "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Deferred", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-189"}]}], "descriptions": [{"lang": "en", "value": "Integer overflow in ColorSync in Apple Mac OS X 10.4.11 and 10.5.8, and Safari before 4.0.4 on Windows, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted ColorSync profile embedded in an image, leading to a heap-based buffer overflow."}, {"lang": "es", "value": "Un desbordamiento enteros en ColorSync en Mac OS X versiones 10.4.11 y 10.5.8, y Safari anterior a versi\u00f3n 4.0.4, de Apple, en Windows, permite a los atacantes remotos ejecutar c\u00f3digo arbitrario o causar una denegaci\u00f3n de servicio (bloqueo de aplicaci\u00f3n) por medio de un bloqueo de un perfil ColorSync dise\u00f1ado insertado en una imagen, conllevando a un desbordamiento de b\u00fafer en la regi\u00f3n heap de la memoria."}], "lastModified": "2025-04-09T00:30:58.490", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:apple:mac_os_x:10.4.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6EE39585-CF3B-4493-96D8-B394544C7643"}, {"criteria": "cpe:2.3:o:apple:mac_os_x:10.5.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1335E35A-D381-4056-9E78-37BC6DF8AD98"}, {"criteria": "cpe:2.3:o:apple:mac_os_x_server:10.4.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D09D5933-A7D9-4A61-B863-CD8E7D5E67D8"}, {"criteria": "cpe:2.3:o:apple:mac_os_x_server:10.5.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "82B4CD59-9F37-4EF0-BA43-427CFD6E1329"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "276684F5-5CD2-44E6-931A-E8B11D022B03", "versionEndIncluding": "4.0.3"}, {"criteria": "cpe:2.3:a:apple:safari:0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "09F4ADD0-449B-4DDD-9878-DE86CBD56756"}, {"criteria": "cpe:2.3:a:apple:safari:0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2E0AECB7-FE62-4664-B3B8-8161DA6DA4BC"}, {"criteria": "cpe:2.3:a:apple:safari:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A419AE8-F5A2-4E25-9004-AAAB325E201A"}, {"criteria": "cpe:2.3:a:apple:safari:1.0:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "64FE1AA1-32D1-4825-8B2B-E66093937D9F"}, {"criteria": "cpe:2.3:a:apple:safari:1.0:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E760CD65-A10E-44F1-B835-DA6B77057C93"}, {"criteria": "cpe:2.3:a:apple:safari:1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "30663B7F-3EDA-4B6B-9F39-65E2CEEB4543"}, {"criteria": "cpe:2.3:a:apple:safari:1.0.0b1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "91A09DA0-83E9-491D-A0A5-AF97B5463D62"}, {"criteria": "cpe:2.3:a:apple:safari:1.0.0b2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D91C7EF0-A56B-40E6-9CED-1228405D034E"}, {"criteria": "cpe:2.3:a:apple:safari:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CE6078B0-4756-4E04-BAC4-C4EC90548A9D"}, {"criteria": "cpe:2.3:a:apple:safari:1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B6B5A3F2-70EE-4ECD-AD6A-0A72D9EBC755"}, {"criteria": "cpe:2.3:a:apple:safari:1.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C87EDB53-FB6E-4B10-B890-A7195D841C5E"}, {"criteria": "cpe:2.3:a:apple:safari:1.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3FD75A4F-F529-4F5E-957D-380215F7B21B"}, {"criteria": "cpe:2.3:a:apple:safari:1.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "834EC299-2010-4306-8CEE-35D735583101"}, {"criteria": "cpe:2.3:a:apple:safari:1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "443FF271-A3AB-4659-80B2-89F771BF5371"}, {"criteria": "cpe:2.3:a:apple:safari:1.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0D29B98E-2F62-4F6F-976D-FEC4EB07F106"}, {"criteria": "cpe:2.3:a:apple:safari:1.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3112AFEB-7893-467C-8B45-A44D5697BB79"}, {"criteria": "cpe:2.3:a:apple:safari:1.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1FC83309-3A97-4619-B5C1-574610838BC6"}, {"criteria": "cpe:2.3:a:apple:safari:1.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "891514D5-50C8-4EDC-81C5-24ABF8BCC022"}, {"criteria": "cpe:2.3:a:apple:safari:1.2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "25032A3A-9D05-4E69-9A22-C9B332976769"}, {"criteria": "cpe:2.3:a:apple:safari:1.2.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AF75A31C-FE42-4CB4-A0E6-0CAB7B122483"}, {"criteria": "cpe:2.3:a:apple:safari:1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4EDD80AB-2A6C-47FF-A1E9-DEB273C6B4E5"}, {"criteria": "cpe:2.3:a:apple:safari:1.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2EAC0DC3-7B55-49BC-89BC-C588E6FC6828"}, {"criteria": "cpe:2.3:a:apple:safari:1.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D9315ADD-5B97-4639-9B59-806EFD7BC247"}, {"criteria": "cpe:2.3:a:apple:safari:1.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E7DD81AB-27D6-4CB0-BBF0-5710DAD55A3D"}, {"criteria": "cpe:2.3:a:apple:safari:2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7E44913D-BC8B-4AA1-84EB-EFEAC531B475"}, {"criteria": "cpe:2.3:a:apple:safari:2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9D3889ED-9329-4C84-A173-2553BEAE3EDA"}, {"criteria": "cpe:2.3:a:apple:safari:2.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7B74019F-C365-4E13-BBB4-D84AD9C1F87C"}, {"criteria": "cpe:2.3:a:apple:safari:2.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1E0E57D5-A7C9-4985-8CE4-E0D4B8BBF371"}, {"criteria": "cpe:2.3:a:apple:safari:2.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "06494FA8-F12A-435A-97A4-F38C58DF43F2"}, {"criteria": "cpe:2.3:a:apple:safari:2.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D1BB047B-D45E-4695-AAEB-D0830DB1663E"}, {"criteria": "cpe:2.3:a:apple:safari:2.0.3:417.8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "018A7A39-2AFD-47A9-AE88-7ABDBFE5EDA1"}, {"criteria": "cpe:2.3:a:apple:safari:2.0.3:417.9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1082B33F-33B5-453A-A5AA-10F65AB2E625"}, {"criteria": "cpe:2.3:a:apple:safari:2.0.3:417.9.2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6CF4DB54-AA7E-44C3-83E3-1A8971719D5B"}, {"criteria": "cpe:2.3:a:apple:safari:2.0.3:417.9.3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EC348464-F08D-4ABF-BB90-3FA93C786F34"}, {"criteria": "cpe:2.3:a:apple:safari:2.0.3_417.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "61652033-FD15-47D6-8B18-CF28E6CE346C"}, {"criteria": "cpe:2.3:a:apple:safari:2.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DFDCF83E-620C-40FA-9901-5D939E315143"}, {"criteria": "cpe:2.3:a:apple:safari:2.0.4_419.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B6D113B5-070D-4F91-AB5E-222D71C90EDF"}, {"criteria": "cpe:2.3:a:apple:safari:2.0_pre:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5E86DEDD-ABDC-46BD-BAD3-A409635F7801"}, {"criteria": "cpe:2.3:a:apple:safari:3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E3BAE980-449F-4F8C-A5BC-6CB7226E971A"}, {"criteria": "cpe:2.3:a:apple:safari:3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4A33F900-D405-40A8-A0A5-3C80320FF6E9"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4444A309-5A97-4E1C-B4EA-C4A070A98CBC"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.0b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5B29951B-9A98-45B7-8E4B-5515C048EC52"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8CEB23DE-1A9D-480E-8B8B-9F110A8ABDE6"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.1:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4CED950D-38AB-4D66-B97A-FB982D86057F"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.1b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D0FDEB4F-133A-43DF-A89B-53E249F1293D"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "84E78F43-07BD-4D62-9512-DA738A92BC7B"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.2b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4AE25E9E-826E-4782-AED8-AC6297B18D93"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F3180366-2240-467E-8AB9-BEA0430948F1"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.3b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5E834B8-545E-4472-9D60-B4CF1340D62C"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5AB9CC52-E533-4306-9E92-73C84B264D4E"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.4_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "02C814DE-1884-4F3E-944D-068F7FD55B70"}, {"criteria": "cpe:2.3:a:apple:safari:3.0.4b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "14A5CA99-8B1C-4C35-85E3-DB0495444A5F"}, {"criteria": "cpe:2.3:a:apple:safari:3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "912A26D1-3264-464F-B101-1796B35437E2"}, {"criteria": "cpe:2.3:a:apple:safari:3.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "01D8C2EF-D552-4279-A12E-70E292F39E31"}, {"criteria": "cpe:2.3:a:apple:safari:3.1.0b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C00082E3-EBF5-4C23-9F57-BF73E587FC05"}, {"criteria": "cpe:2.3:a:apple:safari:3.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C453B588-15FD-4A9C-8BC1-6202A21DAE02"}, {"criteria": "cpe:2.3:a:apple:safari:3.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "460A6F14-7CCE-47CA-BE0C-6DF32CD6A8A2"}, {"criteria": "cpe:2.3:a:apple:safari:3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4DD634B1-4986-4E80-8BDC-58941893F6BB"}, {"criteria": "cpe:2.3:a:apple:safari:3.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "15BB6761-3581-4AE6-85E0-1609D15D7618"}, {"criteria": "cpe:2.3:a:apple:safari:3.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EFA1A4C8-9F87-449F-A11F-52E5D52247E2"}, {"criteria": "cpe:2.3:a:apple:safari:3.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BE8498D2-DECC-4B88-BC1B-F8E2D076EE38"}, {"criteria": "cpe:2.3:a:apple:safari:3.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D1D70D21-2FFC-4006-92AE-CFD7D5AE99CC"}, {"criteria": "cpe:2.3:a:apple:safari:4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9BDA6DB4-A0DA-43CA-AABD-10EEEEB28EAB"}, {"criteria": "cpe:2.3:a:apple:safari:4.0:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9DC87F61-3463-468A-BF0B-070816BBC3CA"}, {"criteria": "cpe:2.3:a:apple:safari:4.0.0b:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "02EAC196-AE43-4787-9AF9-E79E2E1BBA46"}, {"criteria": "cpe:2.3:a:apple:safari:4.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B2FD40E4-D4C9-492E-8432-ABC9BD2C7E67"}, {"criteria": "cpe:2.3:a:apple:safari:4.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "36EA71E0-63F7-46FF-AF11-792741F27628"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "2CF61F35-5905-4BA9-AD7E-7DB261D2F256"}], "operator": "OR"}], "operator": "AND"}], "sourceIdentifier": "cve@mitre.org"}