Apple Keynote 2.0 and 2.0.1 allows remote attackers to read arbitrary files via the keynote: URI handler in a crafted Keynote presentation.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2005-1411
http://securitytracker.com/id?1014053
http://secunia.com/advisories/15508
http://remahl.se/david/vuln/016/
http://lists.apple.com/archives/security-announce/2005/May/msg00005.html