PT-2008-5516 · Apple · Libsystem+1

Publicado

2008-12-17

·

Atualizado

2011-03-08

·

CVE-2008-4221

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Mac OS X versions prior to 10.5.6
Description: The issue is related to the strptime API in Libsystem, which allows context-dependent attackers to cause a denial of service or execute arbitrary code via a crafted date string. This is due to improper memory allocation.
Recommendations: For versions prior to 10.5.6, update to version 10.5.6 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-4221

Produtos afetados

Libsystem
Macos X