CVE-2005-0975: Low severity Apple Mac OS X Server vulnerability
Published Apr 22, 2005
·Updated
Integer signedness error in the parsemachfile function in the mach-o loader (machloader.c) for the Darwin Kernel as used in Mac OS X 10.3.7, and other versions before 10.3.9, allows local users to cause a denial of service (CPU consumption) via a crafted mach-o header.
Affected Software
16 affected components
Apple Mac OS X Server=10.3.2
Apple Mac OS X Server=10.3.7
Apple Mac OS X Server=10.3.5
Apple iOS and macOS=10.3.1
Apple iOS and macOS=10.3.5
Opendarwin Darwin Kernel=7.1
Apple Mac OS X Server=10.3.3
Apple Mac OS X Server=10.3.4
Apple iOS and macOS=10.3.2
Apple iOS and macOS=10.3.6
Apple Mac OS X Server=10.3
Apple Mac OS X Server=10.3.1
Apple iOS and macOS=10.3.4
Apple iOS and macOS=10.3.3
Apple iOS and macOS=10.3
Apple Mac OS X Server=10.3.6
Remediation
Patch Available
Patch Available
Event History
Apr 22, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0975?
CVE-2005-0975 has a medium severity as it allows local users to cause a denial of service through CPU consumption.
2
How do I fix CVE-2005-0975?
To fix CVE-2005-0975, upgrade your Mac OS X to version 10.3.9 or later.
3
Which versions of macOS are affected by CVE-2005-0975?
CVE-2005-0975 affects Mac OS X versions 10.3 through 10.3.7.
4
What is the nature of the vulnerability in CVE-2005-0975?
The vulnerability in CVE-2005-0975 is an integer signedness error in the mach-o loader.
5
Can CVE-2005-0975 be exploited remotely?
CVE-2005-0975 cannot be exploited remotely as it requires local user access to trigger the denial of service.