← לוח פגיעויות

CVE-2006-1471

טרם דורגה

טרם דורג — בהתאם למדיניות NVD מאפריל 2026, רוב ה-CVE אינם מנותחים מיידית. ציון EPSS (אם קיים) עדיין מוצג.

תיאור (מקור, אנגלית)

Format string vulnerability in the CF_syslog function launchd in Apple Mac OS X 10.4 up to 10.4.6 allows local users to execute arbitrary code via format string specifiers that are not properly handled in a syslog call in the logging facility, as demonstrated by using a crafted plist file.

מדדים

EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-23/9/2026
CWE
CWE-134

מוצרים מושפעים

apple: mac os x; apple: mac os x server

קישורים