Home arrow US-CERT Computer Emergency Readiness Team arrow Apple Aperture and iPhoto Vulnerability

Apple Aperture and iPhoto Vulnerability

Apple has released Digital Camera RAW Compatibility Update 2.0Digital Camera RAW Compatibility Update 2.0 to address a vulnerability in Apple Aperture and iPhoto. This vulnerability is due to a boundary error that occurs when processing DNG image files. By convincing a user to open a specially crafted image file, a remote attacker may be able to execute arbitrary code or cause a denial-of-service condition.

US-CERT encourages users to review Apple knowledgebase article HT1232HT1232 and apply any necessary updates.

US-CERT will provide more information as it becomes available.