|
Apple Mac OS X Kernel SearchFS Integer Overflow Vulnerability
Mac OS X kernel is reported prone to a local integer overflow vulnerability. The issue occurs in the searchfs() code. The vulnerability exists due to an error in calculating size arguments derived from user-controlled integer values, which are then used in a user-land to kernel memory copy operation. The issue may be leveraged to corrupt kernel memory and ultimately execute arbitrary code with ring-0 privileges. The issue may also be exploited to trigger a denial of service condition from a kernel panic. |
|
|
Privacy Statement |