AppKit in Apple Mac OS X 10.4.11 inadvertently makes an...
Vulnerability Description
AppKit in Apple Mac OS X 10.4.11 inadvertently makes an NSApplication mach port available for inter-process communication instead of inter-thread communication, which allows local users to execute arbitrary code via crafted messages to privileged applications.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2008-0049
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.securityfocus.com/bid/28304
- http://www.us-cert.gov/cas/techalerts/TA08-079A.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41314
- http://www.vupen.com/english/advisories/2008/0924/references
- http://secunia.com/advisories/29420
- http://www.securitytracker.com/id?1019647
- http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html
- http://www.securityfocus.com/bid/28340
- http://docs.info.apple.com/article.html?artnum=307562
More from apple
View All →Affected Vendor
apple
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.