First published: Wed Dec 17 2008(Updated: )
The kernel in Apple Mac OS X before 10.5.6 allows local users to cause a denial of service (infinite loop and system halt) by running an application that is dynamically linked to libraries on an NFS server, related to occurrence of an exception in this application.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Server | =10.5.2 | |
Apple macOS Server | <=10.5.5 | |
Apple iOS and macOS | =10.5.1 | |
Apple macOS Server | =10.5.1 | |
Apple iOS and macOS | =10.5.3 | |
Apple macOS Server | =10.5.3 | |
Apple iOS and macOS | =10.5 | |
Apple macOS Server | =10.5.4 | |
Apple iOS and macOS | =10.5.2 | |
Apple iOS and macOS | <=10.5.5 | |
Apple macOS Server | =10.5 | |
Apple iOS and macOS | =10.5.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4219 is classified as a medium severity vulnerability that can lead to a local denial of service.
To mitigate CVE-2008-4219, update your Apple Mac OS X to version 10.5.6 or later.
CVE-2008-4219 affects local users running applications on Apple Mac OS X versions prior to 10.5.6.
CVE-2008-4219 allows for a denial of service attack that can cause the system to halt due to an infinite loop.
Yes, CVE-2008-4219 can be exploited by local users with access to applications linked to NFS server libraries.