[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250038

 
 

909

 
 

195843

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Heap-based buffer overflow vulnerability in the ParseValue function in Apple Mac OS X via vectors involving multiple whitespace characters before an empty href

ID: oval:org.secpod.oval:def:30959Date: (C)2015-11-06   (M)2024-02-19
Class: VULNERABILITYFamily: macos




The host is installed with Apple Mac OS X or Server 10.6.8 before 10.11 and is prone to a heap-based buffer overflow vulnerability. A flaw is present in the application, which fails to properly handle vectors involving multiple whitespace characters before an empty href. Successful exploitation could allow remote attackers to crash the service.

Platform:
Apple Mac OS X 10.10
Apple Mac OS X 10.6
Apple Mac OS X 10.7
Apple Mac OS X 10.8
Apple Mac OS X 10.9
Apple Mac OS X Server 10.10
Apple Mac OS X Server 10.6
Apple Mac OS X Server 10.7
Apple Mac OS X Server 10.8
Apple Mac OS X Server 10.9
Reference:
CVE-2015-5523
CVE    1
CVE-2015-5523
CPE    2
cpe:/o:apple:mac_os_x
cpe:/o:apple:mac_os_x_server

© SecPod Technologies