Darwin Kernel Mach File Parsing Local Integer Overflow Vulnerability
BID:12314
Info
Darwin Kernel Mach File Parsing Local Integer Overflow Vulnerability
| Bugtraq ID: | 12314 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Jan 19 2005 12:00AM |
| Updated: | Jan 19 2005 12:00AM |
| Credit: | [email protected] is credited with the discovery of this issue. |
| Vulnerable: |
Darwin Kernel 7.1 |
| Not Vulnerable: | |
Discussion
Darwin Kernel Mach File Parsing Local Integer Overflow Vulnerability
Reportedly a local integer overflow vulnerability affects the Darwin Kernel. This issue is due to a failure of the affected to properly handle integer signedness.
An attacker may leverage this issue to cause the affected computer to crash, denying service to legitimate users. It has been speculated that this issue may also be leverage to escalate privileges, although this is unconfirmed.
Reportedly a local integer overflow vulnerability affects the Darwin Kernel. This issue is due to a failure of the affected to properly handle integer signedness.
An attacker may leverage this issue to cause the affected computer to crash, denying service to legitimate users. It has been speculated that this issue may also be leverage to escalate privileges, although this is unconfirmed.
Exploit / POC
Darwin Kernel Mach File Parsing Local Integer Overflow Vulnerability
The following exploit has been made available. When executed it will cause the affected computer to crash.
The following exploit has been made available. When executed it will cause the affected computer to crash.
Solution / Fix
Darwin Kernel Mach File Parsing Local Integer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Darwin Kernel Mach File Parsing Local Integer Overflow Vulnerability
References:
References:
- Apple Darwin Home Page (Apple)
- Mac OS X Homepage (Apple)
- OpenDarwin Home Page (Darwin)
- Darwin Kernel Vulnerability ([email protected])