CVE-2011-0201
Off-by-one error in the CoreFoundation framework in Apple Mac OS X before 10.6.8 allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via a CFString object that triggers a buffer overflow.
- Affected products
- Corefoundation, Macos X
- Apple Mac Os X
- = 10.6.0, 10.6.1, 10.6.2, 10.6.3, 10.6.4, 10.6.5, 10.6.6, 10.6.7
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 2.5% (84th percentile)
- Weakness
- CWE-189
- NVD status
- Modified
- Published
- 2011-06-24
CVE-2011-0201 at NVD
2 known exploits for CVE-2011-0201
Proof-of-concept code and exploit modules indexed by Sploitus