Preview in Apple Mac OS X 10.5.2 uses 40-bit RC4 when saving a PDF file with encryption, which makes it easier for attackers to decrypt the file via brute force methods.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/28304 | vdb entry |
http://www.us-cert.gov/cas/techalerts/TA08-079A.html | third party advisory us government resource |
http://www.vupen.com/english/advisories/2008/0924/references | vdb entry |
http://www.securityfocus.com/bid/28386 | vdb entry |
http://secunia.com/advisories/29420 | third party advisory |
http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html | patch vendor advisory |
http://docs.info.apple.com/article.html?artnum=307562 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/41276 | vdb entry |
http://www.securitytracker.com/id?1019665 | vdb entry |