>> Apple Mac OS X Service Location Protocol Daemon Local Buffer Overflow Vulnerability
Title : Apple Mac OS X Service Location Protocol Daemon Local Buffer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2007-0239 CVE ID : CVE-2007-0355
Rated as : Moderate Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2007-01-18
Technical Description
A vulnerability has been identified in Apple Mac OS X, which could be exploited by attackers to cause a denial of service or potentially execute arbitrary commands. This issue is due to a buffer overflow error in the service location protocol daemon (slpd) when handling registration requests with an overly long "attr-list" field, which could be exploited by attackers to crash or potentially compromise a vulnerable system.