Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Apple Mac OS X Java Applet HMAC Provider Handling Remote Code Execution Vulnerability

Apple Mac OS X is prone to a vulnerability that lets attackers run arbitrary code because the software fails to properly handle Java applets containing malicious values in the Hash-based Message Authentication Code (HMAC) provider.

Successful exploits will allow an attacker to run arbitrary code in the context of the affected software. Failed exploit attempts may result in denial-of-service conditions.

This issue affects the following:

Mac OS X 10.5.5 (and prior versions)
Mac OS X Server 10.5.5 (and prior versions)
Mac OS X 10.4.11 (and prior versions)
Mac OS X Server 10.4.11 (and prior versions)







 

Privacy Statement
Copyright 2009, SecurityFocus