Knowledge base

iWork: Security features in the iWork 9.1 Update

Posted in Apple Mac OS

Summary

Learn more about the security features in the iWork 9.1 Update.

Products Affected

iWork '09, Product Security

iWork 9.1 Update

  • Numbers

    Available for: iWork 9.0 through 9.0.5

    Impact: Opening a maliciously crafted Excel file may lead to an unexpected application termination or arbitrary code execution

    Description: A buffer overflow existed in the handling of Excel files. Opening a maliciously crafted Excel file in Numbers may lead to an unexpected application termination or arbitrary code execution.

    CVE-ID

    CVE-2010-3785 : Apple

  • Numbers

    Available for: iWork 9.0 through 9.0.5.

    Impact: Opening a maliciously crafted Excel file may lead to an unexpected application termination or arbitrary code execution.

    Description: A memory corruption issue existed in the handling of Excel files. Opening a maliciously crafted Excel file in Numbers may lead to an unexpected application termination or arbitrary code execution.

    CVE-ID

    CVE-2010-3786 : Tobias Klein, working with VeriSign iDefense Labs

  • Pages

    Available for: iWork 9.0 through 9.0.5

    Impact: Opening a maliciously crafted Microsoft Word document may lead to an unexpected application termination or arbitrary code execution.

    Description: A memory corruption issue existed in the handling of Microsoft Word documents. Opening a maliciously crafted Microsoft Word document in Pages may lead to an unexpected application termination or arbitrary code execution.

    CVE-ID

    CVE-2011-1417 : Charlie Miller and Dion Blazakis working with TippingPoint's Zero Day Initiative

Important: Information about products not manufactured by Apple is provided for information purposes only and does not constitute Apple