Apple Mac OS X CarbonCore Stack Based Buffer Overflow Vulnerability
BID:30487
Info
Apple Mac OS X CarbonCore Stack Based Buffer Overflow Vulnerability
| Bugtraq ID: | 30487 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-2320 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 31 2008 12:00AM |
| Updated: | Jun 17 2009 11:39PM |
| Credit: | Thomas Raffetseder, Sergio 'shadown' Alvarez |
| Vulnerable: |
Apple Safari 3.2.3 for Windows Apple Safari 3.2.3 Apple Safari 3.2.2 for Windows Apple Safari 3.1.2 for Windows Apple Safari 3.1.2 Apple Safari 3.1.1 for Windows Apple Safari 3.1.1 Apple Safari 3.0.4 Beta for Windows Apple Safari 3.0.3 Beta for Windows Apple Safari 3.0.3 Beta Apple Safari 3.0.2 Beta for Windows Apple Safari 3.0.2 Beta Apple Safari 3.0.1 Beta for Windows Apple Safari 3.0.1 Beta Apple Safari 2.0.4 Apple Safari 2.0.3 Apple Safari 2.0.2 Apple Safari 2.0.1 Apple Safari 1.3.2 Apple Safari 1.3.1 Apple Safari 1.3 Apple Safari 1.2.3 Apple Safari 1.2.2 Apple Safari 1.2.1 Apple Safari 1.2 Apple Safari 1.1 Apple Safari 1.0 Apple Safari 3.2 Apple Safari 3.1 for Windows Apple Safari 3.1 Apple Safari 3 Beta for Windows Apple Safari 3 Beta Apple Safari 3 Apple Mac OS X Server 10.5.4 Apple Mac OS X Server 10.5.3 Apple Mac OS X Server 10.5.2 Apple Mac OS X Server 10.5.1 Apple Mac OS X Server 10.4.11 Apple Mac OS X Server 10.4.10 Apple Mac OS X Server 10.4.9 Apple Mac OS X Server 10.4.8 Apple Mac OS X Server 10.4.7 Apple Mac OS X Server 10.4.6 Apple Mac OS X Server 10.4.5 Apple Mac OS X Server 10.4.4 Apple Mac OS X Server 10.4.3 Apple Mac OS X Server 10.4.2 Apple Mac OS X Server 10.4.1 Apple Mac OS X Server 10.4 Apple Mac OS X Server 10.5 Apple Mac OS X 10.5.4 Apple Mac OS X 10.5.3 Apple Mac OS X 10.5.2 Apple Mac OS X 10.5.1 Apple Mac OS X 10.4.11 Apple Mac OS X 10.4.10 Apple Mac OS X 10.4.9 Apple Mac OS X 10.4.8 Apple Mac OS X 10.4.7 Apple Mac OS X 10.4.6 Apple Mac OS X 10.4.5 Apple Mac OS X 10.4.4 Apple Mac OS X 10.4.3 Apple Mac OS X 10.4.2 Apple Mac OS X 10.4.1 Apple Mac OS X 10.4 Apple Mac OS X 10.5 Apple iPod Touch 2.2.1 Apple iPod Touch 2.0.2 Apple iPod Touch 2.0.1 Apple iPod Touch 1.1.4 Apple iPod Touch 1.1.3 Apple iPod Touch 1.1.2 Apple iPod Touch 1.1.1 Apple iPod Touch 2.2 Apple iPod Touch 2.1 Apple iPod Touch 2.0 Apple iPod Touch 1.1 Apple iPhone 2.2.1 Apple iPhone 2.0.2 Apple iPhone 2.0.1 Apple iPhone 1.1.4 Apple iPhone 1.1.3 Apple iPhone 1.1.2 Apple iPhone 1.1.1 Apple iPhone 1.0.2 Apple iPhone 1.0.1 Apple iPhone 2.2 Apple iPhone 2.1 Apple iPhone 2.0 Apple iPhone 1.1 Apple iPhone 1 |
| Not Vulnerable: |
Apple Safari 4 for Windows Apple Safari 4 Apple iPod Touch 3.0 Apple iPhone 3.0 |
Discussion
Apple Mac OS X CarbonCore Stack Based Buffer Overflow Vulnerability
Apple Mac OS X is prone to a buffer-overflow vulnerability that affects the CarbonCore component.
Attackers can exploit this issue to execute arbitrary code in the context of the affected application. Failed attempts will likely cause denial-of-service conditions.
The following versions are affected:
Mac OS X v10.4.11 and prior
Mac OS X Server v10.4.11 and prior
Mac OS X v10.5.4 and prior
Mac OS X Server v10.5.4 and prior
NOTE: This issue was previously covered in BID 30483 (Apple Mac OS X 2008-005 Multiple Security Vulnerabilities) but has been given its own record to better document the vulnerability.
Apple Mac OS X is prone to a buffer-overflow vulnerability that affects the CarbonCore component.
Attackers can exploit this issue to execute arbitrary code in the context of the affected application. Failed attempts will likely cause denial-of-service conditions.
The following versions are affected:
Mac OS X v10.4.11 and prior
Mac OS X Server v10.4.11 and prior
Mac OS X v10.5.4 and prior
Mac OS X Server v10.5.4 and prior
NOTE: This issue was previously covered in BID 30483 (Apple Mac OS X 2008-005 Multiple Security Vulnerabilities) but has been given its own record to better document the vulnerability.
Exploit / POC
Apple Mac OS X CarbonCore Stack Based Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Apple Mac OS X CarbonCore Stack Based Buffer Overflow Vulnerability
Solution:
The vendor has released an advisory and updates. Please see the referenced advisory for more information.
Apple Safari 3.1
Apple Safari 3 Beta
Apple Safari 3
Apple Safari 3 Beta for Windows
Apple Safari 3.1 for Windows
Apple Safari 3.2
Apple Safari 1.0
Apple Safari 1.1
Apple Safari 1.2
Apple Safari 1.2.2
Apple Safari 1.2.3
Apple Safari 1.3
Apple Safari 1.3.1
Apple Safari 1.3.2
Apple Mac OS X 10.5.4
Apple Mac OS X Server 10.5.4
Apple Safari 2.0.1
Apple Safari 2.0.2
Apple Safari 2.0.3
Apple Safari 2.0.4
Apple Safari 3.0.1 Beta
Apple Safari 3.0.1 Beta for Windows
Apple Safari 3.0.2 Beta
Apple Safari 3.0.2 Beta for Windows
Apple Safari 3.0.3 Beta for Windows
Apple Safari 3.0.3 Beta
Apple Safari 3.0.4 Beta for Windows
Apple Safari 3.1.1
Apple Safari 3.1.2 for Windows
Apple Safari 3.1.2
Apple Safari 3.2.3 for Windows
Apple Safari 3.2.3
Solution:
The vendor has released an advisory and updates. Please see the referenced advisory for more information.
Apple Safari 3.1
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 3 Beta
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 3
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 3 Beta for Windows
-
Apple SafariQuickTimeSetup.exe
Safari4
http://www.apple.com/safari/download/ -
Apple SafariSetup.exe
Safari4
http://www.apple.com/safari/download/
Apple Safari 3.1 for Windows
-
Apple SafariQuickTimeSetup.exe
Safari4
http://www.apple.com/safari/download/ -
Apple SafariSetup.exe
Safari4
http://www.apple.com/safari/download/
Apple Safari 3.2
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 1.0
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 1.1
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 1.2
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 1.2.2
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 1.2.3
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 1.3
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 1.3.1
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 1.3.2
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Mac OS X 10.5.4
-
Apple SecUpd2008-005.dmg
For Mac OS X v10.5.4 and Mac OS X Server 10.5.4
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty2.pl/product=20388&cat= 1&platform=osx&method=sa/SecUpd2008-005.dmg
Apple Mac OS X Server 10.5.4
-
Apple SecUpd2008-005.dmg
For Mac OS X v10.5.4 and Mac OS X Server 10.5.4
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty2.pl/product=20388&cat= 1&platform=osx&method=sa/SecUpd2008-005.dmg
Apple Safari 2.0.1
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 2.0.2
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 2.0.3
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 2.0.4
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 3.0.1 Beta
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 3.0.1 Beta for Windows
-
Apple SafariQuickTimeSetup.exe
Safari4
http://www.apple.com/safari/download/ -
Apple SafariSetup.exe
Safari4
http://www.apple.com/safari/download/
Apple Safari 3.0.2 Beta
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 3.0.2 Beta for Windows
-
Apple SafariQuickTimeSetup.exe
Safari4
http://www.apple.com/safari/download/ -
Apple SafariSetup.exe
Safari4
http://www.apple.com/safari/download/
Apple Safari 3.0.3 Beta for Windows
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 3.0.3 Beta
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 3.0.4 Beta for Windows
-
Apple SafariQuickTimeSetup.exe
Safari4
http://www.apple.com/safari/download/ -
Apple SafariSetup.exe
Safari4
http://www.apple.com/safari/download/
Apple Safari 3.1.1
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 3.1.2 for Windows
-
Apple SafariQuickTimeSetup.exe
Safari4
http://www.apple.com/safari/download/ -
Apple SafariSetup.exe
Safari4
http://www.apple.com/safari/download/
Apple Safari 3.1.2
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
Apple Safari 3.2.3 for Windows
-
Apple SafariQuickTimeSetup.exe
Safari4
http://www.apple.com/safari/download/ -
Apple SafariSetup.exe
Safari4
http://www.apple.com/safari/download/
Apple Safari 3.2.3
-
Apple Safari4.0Leo.dmg
http://www.apple.com/safari/download/ -
Apple Safari4.0Ti.dmg
http://www.apple.com/safari/download/
References
Apple Mac OS X CarbonCore Stack Based Buffer Overflow Vulnerability
References:
References: