CVE-2004-0430

Stack-based buffer overflow in AppleFileServer for Mac OS X 10.3.3 and earlier allows remote attackers to execute arbitrary code via a LoginExt packet for a Cleartext Password User Authentication Method (UAM) request with a PathName argument that includes an AFPName type string that is longer than the associated length field.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os_x_server:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:48

Type Values Removed Values Added
References () http://lists.apple.com/mhonarc/security-announce/msg00049.html - () http://lists.apple.com/mhonarc/security-announce/msg00049.html -
References () http://secunia.com/advisories/11539 - () http://secunia.com/advisories/11539 -
References () http://securitytracker.com/id?1010039 - () http://securitytracker.com/id?1010039 -
References () http://www.atstake.com/research/advisories/2004/a050304-1.txt - Patch, Vendor Advisory () http://www.atstake.com/research/advisories/2004/a050304-1.txt - Patch, Vendor Advisory
References () http://www.kb.cert.org/vuls/id/648406 - US Government Resource () http://www.kb.cert.org/vuls/id/648406 - US Government Resource
References () http://www.securiteam.com/securitynews/5QP0115CUO.html - () http://www.securiteam.com/securitynews/5QP0115CUO.html -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/16049 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/16049 -

Information

Published : 2004-07-07 04:00

Updated : 2024-11-20 23:48


NVD link : CVE-2004-0430

Mitre link : CVE-2004-0430

CVE.ORG link : CVE-2004-0430


JSON object : View

Products Affected

apple

  • mac_os_x
  • mac_os_x_server