Apple iCal Calendar Alarm Vulnerability
- 0
- Add a Comment
- No Related Post
Critical: Moderately critical Impact: System access
Where: From remote Solution Status: Vendor Patch Software: Apple iCal 1.xAaron has reported a vulnerability in iCal, which potentially can be exploited by malicious people to compromise a user’s system.
The problem is that it is possible to execute arbitrary programs or send e-mails via alarms by tricking a user into opening or importing a new iCal calendar.
Solution: Update to version 1.5.4.
http://www.apple.com/ical/download/
