Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Apple Mac OS X Kernel SearchFS Integer Overflow Vulnerability

Mac OS X kernel is reported prone to a local integer overflow vulnerability. The issue occurs in the searchfs() code.

The vulnerability exists due to an error in calculating size arguments derived from user-controlled integer values, which are then used in a user-land to kernel memory copy operation.

The issue may be leveraged to corrupt kernel memory and ultimately execute arbitrary code with ring-0 privileges. The issue may also be exploited to trigger a denial of service condition from a kernel panic.







 

Privacy Statement
Copyright 2008, SecurityFocus