First published: Sat Dec 15 2007(Updated: )
The cs_validate_page function in bsd/kern/ubc_subr.c in the xnu kernel 1228.0 and earlier in Apple Mac OS X 10.5.1 allows local users to cause a denial of service (failed assertion and system crash) via a crafted signed Mach-O binary that causes the hashes function to return NULL.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | =10.5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6359 has a medium severity rating due to its potential to cause denial of service attacks resulting in system crashes.
To mitigate CVE-2007-6359, it is recommended to upgrade to a patched version of the macOS that resolves this vulnerability.
CVE-2007-6359 specifically affects users running Apple Mac OS X version 10.5.1.
CVE-2007-6359 enables local users to perform a denial of service attack that can crash the system.
The vulnerability in CVE-2007-6359 resides in the cs_validate_page function within the xnu kernel.