Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 07:47:51 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1996105155&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2Ffiledesc%2Fvupensafari-overflow.txt.html%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1996105155.1338191271.1338191271.1338191271.1%3B%2B__utmz%3D32867617.1338191271.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) Apple Safari ColorSync Profile Integer Overflow http://packetstormsecurity.org/files/87200/vupensafari-overflow.txt http://packetstormsecurity.org/files/87200/vupensafari-overflow.txt http://packetstormsecurity.org/files/87200/Apple-Safari-ColorSync-Profile-Integer-Overflow.html Fri, 12 Mar 2010 23:05:36 GMT VUPEN Vulnerability Research Team discovered a vulnerability in Apple Safari. The flaw is caused by an integer overflow error in ColorSync when processing certain images with an embedded color profile, which could be exploited by attackers to potentially execute arbitrary code via a specially crafted web page. Versions prior to 4.0.5 are vulnerable.