Computer Security
[EN] securityvulns.ru no-pyccku


Apple Mac OS X multiple security vulnerabilities
updated since 15.11.2007
Published:17.11.2007
Source:
SecurityVulns ID:8348
Type:remote
Threat Level:
6/10
Description:Mach ports privilege escalation. Multiple Appletalk protocol handling vulnerabilities. ldt privilege escalation.
Affected:APPLE : MacOS X 10.3
 APPLE : MacOS X 10.4
CVE:CVE-2007-4269 (Integer overflow in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a crafted AppleTalk Session Protocol (ASP) message on an AppleTalk socket, which triggers a heap-based buffer overflow.)
 CVE-2007-4268
 CVE-2007-4267
 CVE-2007-3749
Original documentdocumentRISE Security, [RISE-2007004] Apple Mac OS X 10.4.x Kernel i386_set_ldt() Integer Overflow Vulnerability (17.11.2007)
 documentRISE Security, [Full-disclosure] [RISE-2007004] Apple Mac OS X 10.4.x Kernel i386_set_ldt() Integer Overflow Vulnerability (16.11.2007)
 documenttk_(at)_trapkit.de, [TKADV2007-001] Mac OS X TIOCSETD IOCTL Kernel Memory Corruption Vulnerability (16.11.2007)
 documentCERT, US-CERT Technical Cyber Security Alert TA07-319A -- Apple Updates for Multiple Vulnerabilities (16.11.2007)
 documentIDEFENSE, [Full-disclosure] iDefense Security Advisory 11.14.07: Apple Mac OS X AppleTalk mbuf Kernel Heap Overflow Vulnerability (15.11.2007)
 documentIDEFENSE, [Full-disclosure] iDefense Security Advisory 11.14.07: Apple Mac OS X Mach Port Inheritance Privilege Escalation Vulnerability (15.11.2007)
Files:Exploits Apple Mac OS X 10.4.x Kernel i386_set_ldt() Integer Overflow Vulnerability

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod