Format string vulnerability in Apple iPhoto 6.0.5 (316),...
Moderate severity
Unreviewed
Published
May 1, 2022
to the GitHub Advisory Database
•
Updated Apr 9, 2025
Description
Published by the National Vulnerability Database
Jan 4, 2007
Published to the GitHub Advisory Database
May 1, 2022
Last updated
Apr 9, 2025
Format string vulnerability in Apple iPhoto 6.0.5 (316), and other versions before 6.0.6, allows remote user-assisted attackers to execute arbitrary code via a crafted photocast with format string specifiers in the title of an RSS iPhoto feed.
References