Integer signedness error in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a crafted AppleTalk message with a negative value, which satisfies a signed comparison during mbuf allocation but is later interpreted as an unsigned value, which triggers a heap-based buffer overflow.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-11-15T01:00:00
Updated: 2024-08-07T14:46:39.399Z
Reserved: 2007-08-09T00:00:00
Link: CVE-2007-4268
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-11-15T01:46:00.000
Modified: 2024-11-21T00:35:11.323
Link: CVE-2007-4268
Redhat
No data.