Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Apple Mac OS X SSH URI Handler Remote Code Execution Vulnerability

It has been reported that Mac OS X may be prone to a vulnerability that could allow a remote attacker to execute arbitrary script code on a vulnerable system.

The issue presents itself due to the 'ssh:' protocol implemented by the Mac OS X ssh client application. It has been reported that the 'ssh:' protocol can be invoked remotely through a web browser. This could allow an attacker to craft a malicious link and entice a user to follow the link in order to execute code code via the ssh application.







 

Privacy Statement
Copyright 2009, SecurityFocus