Vulnerabilities > CVE-2006-6015 - Remote Denial of Service vulnerability in Apple mac OS X 10.4

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
apple
exploit available

Summary

Buffer overflow in the JavaScript implementation in Safari on Apple Mac OS X 10.4 allows remote attackers to cause a denial of service (application crash) via a long argument to the exec method of a regular expression.

Vulnerable Configurations

Part Description Count
OS
Apple
1

Exploit-Db

descriptionApple Safari 2.0.4 JavaScript Regular Expression Match Remote Denial of Service Vulnerability. CVE-2006-6015. Dos exploit for osx platform
idEDB-ID:29007
last seen2016-02-03
modified2006-11-14
published2006-11-14
reporterjbh_cg
sourcehttps://www.exploit-db.com/download/29007/
titleApple Safari 2.0.4 JavaScript Regular Expression Match Remote Denial of Service Vulnerability

Statements

contributorJoshua Bressers
lastmodified2006-12-04
organizationRed Hat
statementRed Hat does not consider unexploitable client application crashes to be security flaws. This bug causes a stack recursion crash which is not exploitable.