Apple iPhoto DPAP Remote Denial of Service Vulnerability
BID:27867
Info
Apple iPhoto DPAP Remote Denial of Service Vulnerability
| Bugtraq ID: | 27867 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-0830 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 18 2008 12:00AM |
| Updated: | May 07 2015 05:32PM |
| Credit: | David Wharton is credited with the discovery of this vulnerability. |
| Vulnerable: |
Apple iPhoto 4.0.3 |
| Not Vulnerable: | |
Discussion
Apple iPhoto DPAP Remote Denial of Service Vulnerability
Apple iPhoto is prone to a remote denial-of-service vulnerability.
Attackers can exploit this issue to crash the affected application, denying service to legitimate users.
Exploiting this issue will allow attackers to execute arbitrary code with the permissions of a user running the application. Failed attacks will likely cause denial-of-service conditions.
This issue affects Apple iPhoto 4.0.3 and prior versions.
Apple iPhoto is prone to a remote denial-of-service vulnerability.
Attackers can exploit this issue to crash the affected application, denying service to legitimate users.
Exploiting this issue will allow attackers to execute arbitrary code with the permissions of a user running the application. Failed attacks will likely cause denial-of-service conditions.
This issue affects Apple iPhoto 4.0.3 and prior versions.
Exploit / POC
Apple iPhoto DPAP Remote Denial of Service Vulnerability
The following exploit code is available:
The following exploit code is available:
Solution / Fix
Apple iPhoto DPAP Remote Denial of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].