Technology news and Jobs arrow Information Technology News arrow MoAB spots another format string vulnerability
MoAB spots another format string vulnerability E-mail
by Stephen Withers   
Saturday, 27 January 2007
Mac OS X's Installer utility has a format string bug that can be triggered by maliciously crafted package file names, according to the Month of Apple Bugs project.

"This is another issue related with the now infamous NSRunAlertPanel() and related functions. Actually, there are dozens of issues like these in nearly every Mac OS X application", wrote LMH, adding that it could be exploited in conjunction with other vulnerabilities.

"Under certain circumstances this can be useful and thus arbitrary code execution can't be considered 'not possible' right away".

No workaround is offered.{moscomment}
Powered By Joomla Tags

Please enable JavaScript in your browser to post your comment!

 
< Next story in category   Previous story in the category >
iTWire user statistics Visitors last 30 days
694,279
Subscribers 15,210
#1 independent technology news advertise here
  •   *  
  • Search
  • AdvSeach
  • Login
  • Events
  • FreeStuff

- Advertisement -

Featured Whitepapers

Follow iTWire on Twitter

About iTWire

iTWire is all about technology news, information, jobs and community for the IT and telecommunications industry professional. Subscribe to our free ICT daily newsletter