CVE-2007-4684: Buffer Overflow
Published Nov 15, 2007
·Updated
Integer overflow in the kernel in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a large numsels argument to the i386setldt system call.
Affected Software
11 affected components
Apple iOS and macOS=10.4.3
Apple iOS and macOS=10.4.1
Apple iOS and macOS=10.4.10
Apple iOS and macOS=10.4.9
Apple iOS and macOS=10.4.7
Apple iOS and macOS=10.4.4
Apple iOS and macOS=10.4
Apple iOS and macOS=10.4.6
Apple iOS and macOS=10.4.5
Apple iOS and macOS=10.4.8
Apple iOS and macOS=10.4.2
Event History
Nov 15, 2007
CVE Published
01:46 AM
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4684?
CVE-2007-4684 is considered to have a high severity due to its potential to allow local users to execute arbitrary code.
2
How do I fix CVE-2007-4684?
To fix CVE-2007-4684, users should update their Apple Mac OS X to the latest version that addresses this vulnerability.
3
Who is affected by CVE-2007-4684?
CVE-2007-4684 affects local users running Apple Mac OS X versions between 10.4 and 10.4.10.
4
What systems are vulnerable to CVE-2007-4684?
Vulnerable systems to CVE-2007-4684 include all versions of Apple Mac OS X from 10.4.1 to 10.4.10.
5
What is the attack vector for CVE-2007-4684?
The attack vector for CVE-2007-4684 involves executing a large num_sels argument in the i386_set_ldt system call.