Integer signedness error in Apple Type Services (ATS) in Apple Mac OS X 10.5.8 allows remote attackers to execute arbitrary code via a crafted embedded Compact Font Format (CFF) font in a document.
                
            References
                    | Link | Resource | 
|---|---|
| http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html | Vendor Advisory | 
| http://support.apple.com/kb/HT4435 | Patch Vendor Advisory | 
| https://exchange.xforce.ibmcloud.com/vulnerabilities/63170 | |
| http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html | Vendor Advisory | 
| http://support.apple.com/kb/HT4435 | Patch Vendor Advisory | 
| https://exchange.xforce.ibmcloud.com/vulnerabilities/63170 | 
Configurations
                    History
                    No history.
Information
                Published : 2010-11-16 23:18
Updated : 2025-04-11 00:51
NVD link : CVE-2010-4010
Mitre link : CVE-2010-4010
CVE.ORG link : CVE-2010-4010
JSON object : View
Products Affected
                apple
- mac_os_x
- mac_os_x_server
CWE
                
                    
                        
                        CWE-189
                        
            Numeric Errors
