Description: LMH has reported some vulnerabilities in Apple Mac OS X, which can be exploited by malicious people to cause a DoS (Denial of Service).
1) An integer overflow error in the "byte_swap_sbin()" function in bsd/ufs/ufs/ufs_byte_order.c can be exploited to cause a kernel panic.
2) An error exists in the "ufs_dirbad()" function when handling corrupted UFS DMG images and can be exploited to cause a kernel panic.
NOTE: These vulnerabilities are only remotely exploitable via the Safari web browser when the "opening safe files after downloading" option is enabled.
The vulnerabilities are reported on Mac OS X 10.4.8 running on a x86 platform. Other versions may also be affected.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.