Security Advisory
CVE-2013-5178
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
LaunchServices in Apple Mac OS X before 10.9 does not properly restrict Unicode characters in filenames, which allows context-dependent attackers to spoof file extensions via a crafted character sequence.