PT-2004-2313 · Roxio+1 · Roxio Toast Titanium+1
Adriel T. Desautels
·
Published
2004-12-31
·
Updated
2017-07-11
·
CVE-2004-1398
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
Apple OS X (affected versions not specified)
Description:
The issue is related to a format string vulnerability in the prelink.c file of kextload, which is used by TDIXSupport in Roxio Toast Titanium and possibly other products. This vulnerability allows local users to execute arbitrary code via format string specifiers in the extension argument.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Os X
Roxio Toast Titanium