Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Apple Mac OS X LaunchD Local Format String Vulnerability

Apple Mac OS X 'launchd' is prone to a local format-string vulnerability. A local attacker can exploit this issue through a malicious 'plist' file that includes externally supplied format specifiers that will be passed to the vulnerable code.

A successful attack may crash the application or lead to arbitrary code execution.

This issue was initially discussed in BID 18686 (Apple Mac OS X Multiple Security Vulnerabilities).







 

Privacy Statement
Copyright 2009, SecurityFocus