Secunia Advisory: SA27938  
Release Date: 2007-12-07

Critical:
Moderately critical
Impact: DoS
Where: From remote
Solution Status: Unpatched

OS:Apple Macintosh OS X


  This advisory is currently marked as unpatched!
- Companies can be alerted when a patch is released!

Description:
mu-b has reported a vulnerability in Apple Mac OS X, which can be exploited by malicious people to cause a DoS (Denial of Service).

The vulnerability is caused due to an error within vpnd when handling connections and can be exploited to stop the VPN daemon by sending a specially crafted packet to the service.

The vulnerability is reported in Apple Mac OS X 10.5.0 (Leopard). Other versions may also be affected.

Solution:
Restrict network access to the VPN daemon to trusted clients.

Provided and/or discovered by:
mu-b

Original Advisory:
http://milw0rm.com/exploits/4690
arrow
arrow
    全站熱搜
    創作者介紹
    創作者 ivan0914 的頭像
    ivan0914

    I'n Blog 之萬象真藏

    ivan0914 發表在 痞客邦 留言(0) 人氣()