Apple Mac OS X CVE-2012-0650 Buffer Overflow Vulnerability
BID:56240
Info
Apple Mac OS X CVE-2012-0650 Buffer Overflow Vulnerability
| Bugtraq ID: | 56240 |
| Class: | Unknown |
| CVE: |
CVE-2012-0650 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 19 2012 12:00AM |
| Updated: | Apr 02 2013 03:57PM |
| Credit: | aazubel working with HP's Zero Day Initiative |
| Vulnerable: |
Apple Mac Os X Server 10.6.8 |
| Not Vulnerable: | |
Discussion
Apple Mac OS X CVE-2012-0650 Buffer Overflow Vulnerability
Apple Mac OS X is prone to a buffer-overflow vulnerability.
Successfully exploiting this issue may allow attackers to execute arbitrary code within the context of the application. Failed exploit attempts will likely result in a denial-of-service condition.
The following versions are affected:
Mac OS X v10.6.8
Mac OS X Server v10.6.8
NOTE: This issue was previously discussed in BID 55623 (Apple Mac OS X Security Update 2012-004 Multiple Security Vulnerabilities) but has been given its own record to better document it.
Apple Mac OS X is prone to a buffer-overflow vulnerability.
Successfully exploiting this issue may allow attackers to execute arbitrary code within the context of the application. Failed exploit attempts will likely result in a denial-of-service condition.
The following versions are affected:
Mac OS X v10.6.8
Mac OS X Server v10.6.8
NOTE: This issue was previously discussed in BID 55623 (Apple Mac OS X Security Update 2012-004 Multiple Security Vulnerabilities) but has been given its own record to better document it.
Exploit / POC
Apple Mac OS X CVE-2012-0650 Buffer Overflow Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Apple Mac OS X CVE-2012-0650 Buffer Overflow Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.