PT-2009-2832 · Apple · Macos X
Published
2009-02-13
·
Updated
2011-03-08
·
CVE-2009-0139
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Apple Mac OS X version 10.5.6
Description
The issue is related to an integer overflow in the SMB component, which can be exploited by remote SMB servers. This can be achieved by using a crafted SMB file system that triggers a heap-based buffer overflow, potentially leading to a denial of service (system shutdown) or the execution of arbitrary code.
Recommendations
For Apple Mac OS X version 10.5.6, consider disabling the SMB component until a patch is available to prevent potential exploitation. Restrict access to SMB servers to minimize the risk of remote attacks.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Macos X