[VIM] Apple OS X ATSServer CFF CharStrings INDEX Sign Mismatch

George A. Theall theall at tenable.com
Fri Nov 19 13:36:26 CST 2010

Core Security's advisory recent Mac OS X advisory (http://www.coresecurity.com/content/Apple-OSX-ATSServer-CharStrings-Sign-Mismatch 
) seems to be creating confusion. For example, there's this entry in  
their timeline:

   "2010-11-11: Apple informs Core that due to a clerical error they  
used the identifier CVE-2010-1797 for their advisory, instead of  
CVE-2010-4010. "

Fortunately, this doesn't seem to have introduced any problems with  
the two CVE entries themselves. Had you noticed this, Steve?

SecurityFocus, though, has two BIDs that seem to be for CVE-2010-4010  
-- BID 44729 created last week and BID 44984 created today. Rob?

theall at tenablesecurity.com

More information about the VIM mailing list