CVE-2004-0430: Buffer Overflow
Stack-based buffer overflow in AppleFileServer for Mac OS X 10.3.3 and earlier allows remote attackers to execute arbitrary code via a LoginExt packet for a Cleartext Password User Authentication Method (UAM) request with a PathName argument that includes an AFPName type string that is longer than the associated length field.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0430?
CVE-2004-0430 is classified as a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2004-0430?
To fix CVE-2004-0430, upgrade to Mac OS X version 10.3.4 or later and ensure that your system is up to date with the latest security patches.
What software is affected by CVE-2004-0430?
CVE-2004-0430 affects AppleFileServer in Mac OS X 10.3.3 and earlier, including Apple Mac OS X Server versions.
What type of attack can exploit CVE-2004-0430?
CVE-2004-0430 can be exploited through crafted LoginExt packets that manipulate the PathName argument to trigger a stack-based buffer overflow.
Can CVE-2004-0430 be exploited remotely?
Yes, CVE-2004-0430 can be exploited remotely by attackers without physical access to the affected systems.