|
Mac OS X iSync mRouter Buffer Overflow Vulnerability
|
|
|
|
|
Secunia Advisory:
|
SA13965
|
|
|
Release Date:
|
2005-01-26
|
|
Last Update:
|
2005-04-20
|
|
|
Critical:
|

Less critical
|
|
Impact:
|
Privilege escalation
|
|
Where:
|
Local system
|
|
Solution Status:
|
Vendor Patch
|
|
| OS: | Apple Macintosh OS X
|
|
| | CVE reference: | CVE-2005-0193 (Secunia mirror)
|
|
|
Want to know the next time vulnerabilities are fixed in this product? - Companies can be alerted via email and SMS! |
|
|
Description: Braden Thomas has reported a vulnerability in iSync, which can be exploited by malicious, local users to gain escalated privileges.
The vulnerability is caused due to a boundary error in the handling of the "-v" and "-a" command line options. This can be exploited to cause a buffer overflow by supplying an overly long argument (over 4096 bytes).
Successful exploitation allows execution of arbitrary code with the privileges of the mRouter application.
The vulnerability has been reported in Mac OS X 10.3.7 and prior.
Solution: Apply Security Update 2005-004.
http://www.apple.com/support/downloads/securityupdate2005004.html
Provided and/or discovered by: Braden Thomas
Changelog: 2005-02-07: Added CVE reference.
2005-04-20: Vendor issues fix. Updated "Solution" section.
Original Advisory: Apple:
http://docs.info.apple.com/article.html?artnum=301326
|
|
|
|
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|
|
|
|
126 Related Secunia Security Advisories, displaying 10
|
|
|
1. Mozilla Firefox 3 on Mac OS X GIF File Handling Code Execution
|
|
2. Apple Mac OS X Security Update Fixes Multiple Vulnerabilities
|
|
3. Apple Mac OS X ARDAgent Privilege Escalation Vulnerability
|
|
4. Apple Mac OS X Security Update Fixes Multiple Vulnerabilities
|
|
5. Apple iCal Memory Corruption Vulnerability
|
|
6. Mac OS X Security Update Fixes Multiple Vulnerabilities
|
|
7. Apple Mac OS X "ipcomp6_input()" Denial of Service
|
|
8. Apple Mac OS X Security Update Fixes Multiple Vulnerabilities
|
|
9. Apple Mac OS X Security Update Fixes Multiple Vulnerabilities
|
|
10. Mac OS X Java Multiple Vulnerabilities
|
Show all related advisories
|
|
|
Send Feedback to Secunia
|
|
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.
|
|
|
|