HIGH · 7.2

CVE-2007-0355

Buffer overflow in the Apple Minimal SLP v2 Service Agent (slpd) in Mac OS X 10.4.11 and earlier, including 10.4.8, allows local users, and possibly remote attackers, to gain privileges and possibly e...

Vulnerability Description

Buffer overflow in the Apple Minimal SLP v2 Service Agent (slpd) in Mac OS X 10.4.11 and earlier, including 10.4.8, allows local users, and possibly remote attackers, to gain privileges and possibly execute arbitrary code via a registration request with an invalid attr-list field.

CVSS Score

7.2

HIGH

AV:L/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
AppleMinimal Slp Service Agent10.4.11
AppleMac Os X10.4.8

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-0355?

CVE-2007-0355 is a vulnerability with a CVSS score of 7.2 (HIGH). Buffer overflow in the Apple Minimal SLP v2 Service Agent (slpd) in Mac OS X 10.4.11 and earlier, including 10.4.8, allows local users, and possibly remote attackers, to gain privileges and possibly e...

How severe is CVE-2007-0355?

CVE-2007-0355 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-0355?

Check the references section above for vendor advisories and patch information. Affected products include: Apple Minimal Slp Service Agent, Apple Mac Os X.