7.2
CVSSv2

CVE-2007-0355

Published: 19/01/2007 Updated: 19/10/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the Apple Minimal SLP v2 Service Agent (slpd) in Mac OS X 10.4.11 and previous versions, including 10.4.8, allows local users, and possibly remote attackers, to gain privileges and possibly execute arbitrary code via a registration request with an invalid attr-list field.

Vulnerable Product Search on Vulmon Subscribe to Product

apple minimal slp service agent 10.4.11

apple mac os x 10.4.8

Exploits

#!/usr/bin/ruby # (c) Copyright 2006 Lance M Havok <lmh [at] info-pullcom> # Kevin Finisterre <kf_lists [at] digitalmunitioncom> # All pwnage reserved # # Proof of concept for MOAB-17-01-2007 # projectsinfo-pullcom/moab/MOAB-17-01-2007html # # Originally reported to Apple by Kevin, on 08/02/2006 requir ...