[Forgot Password]
Login  Register Subscribe

23631

 
 

115083

 
 

97147

 
 

909

 
 

78730

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2009-2829

Date: (C)2009-11-10   (M)2015-12-16 


Event Monitor in Apple Mac OS X 10.5.8 does not properly handle crafted authentication data sent to an SSH daemon, which allows remote attackers to cause a denial of service via vectors involving processing of XML log documents by other services, related to a "log injection" issue.

CVSS Score: 5.0Access Vector: NETWORK
Exploit Score: 10.0Access Complexity: LOW
Impact Score: 2.9Authentication: NONE
 Confidentiality: NONE
 Integrity: NONE
 Availability: PARTIAL





Reference:
BID-36956
ADV-2009-3184
APPLE-SA-2009-11-09-1
http://support.apple.com/kb/HT3937

CPE    1
cpe:/o:apple:mac_os_x_server:10.5.8
CWE    1
CWE-255

© 2013 SecPod Technologies