Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2009-2832

Overview

Vulnerability Score 5.1 5.1
CVE Id CVE-2009-2832
Last Modified 17 Nov 2009 02:03:00
Published 10 Nov 2009 02:30:01
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity HIGH
Authentication NONE

CVE-2009-2832

Summary

Buffer overflow in FTP Server in Apple Mac OS X before 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a CWD command specifying a pathname in a deeply nested hierarchy of directories, related to a "CWD command line tool."

Vulnerable Systems

Operating System

  • Apple Mac Os X Server 10.0

  • Apple Mac Os X Server 10.0.0

  • Apple Mac Os X Server 10.0.1

  • Apple Mac Os X Server 10.0.2

  • Apple Mac Os X Server 10.0.3

  • Apple Mac Os X Server 10.0.4

  • Apple Mac Os X Server 10.1

  • Apple Mac Os X Server 10.1.0

  • Apple Mac Os X Server 10.1.1

  • Apple Mac Os X Server 10.1.2

  • Apple Mac Os X Server 10.1.3

  • Apple Mac Os X Server 10.1.4

  • Apple Mac Os X Server 10.1.5

  • Apple Mac Os X Server 10.2

  • Apple Mac Os X Server 10.2.0

  • Apple Mac Os X Server 10.2.1

  • Apple Mac Os X Server 10.2.2

  • Apple Mac Os X Server 10.2.3

  • Apple Mac Os X Server 10.2.4

  • Apple Mac Os X Server 10.2.5

  • Apple Mac Os X Server 10.2.6

  • Apple Mac Os X Server 10.2.7

  • Apple Mac Os X Server 10.2.8

  • Apple Mac Os X Server 10.3

  • Apple Mac Os X Server 10.3.0

  • Apple Mac Os X Server 10.3.1

  • Apple Mac Os X Server 10.3.2

  • Apple Mac Os X Server 10.3.3

  • Apple Mac Os X Server 10.3.4

  • Apple Mac Os X Server 10.3.5

  • Apple Mac Os X Server 10.3.6

  • Apple Mac Os X Server 10.3.7

  • Apple Mac Os X Server 10.3.8

  • Apple Mac Os X Server 10.3.9

  • Apple Mac Os X Server 10.4

  • Apple Mac Os X Server 10.4.0

  • Apple Mac Os X Server 10.4.1

  • Apple Mac Os X Server 10.4.10

  • Apple Mac Os X Server 10.4.11

  • Apple Mac Os X Server 10.4.2

  • Apple Mac Os X Server 10.4.3

  • Apple Mac Os X Server 10.4.4

  • Apple Mac Os X Server 10.4.5

  • Apple Mac Os X Server 10.4.6

  • Apple Mac Os X Server 10.4.7

  • Apple Mac Os X Server 10.4.8

  • Apple Mac Os X Server 10.4.9

  • Apple Mac Os X Server 10.5

  • Apple Mac Os X Server 10.5.0

  • Apple Mac Os X Server 10.5.1

  • Apple Mac Os X Server 10.5.2

  • Apple Mac Os X Server 10.5.3

  • Apple Mac Os X Server 10.5.4

  • Apple Mac Os X Server 10.5.5

  • Apple Mac Os X Server 10.5.6

  • Apple Mac Os X Server 10.5.7

  • Apple Mac Os X Server 10.5.8

  • Apple Mac Os X Server 10.6

  • Apple Mac Os X Server 10.6.1


References

BID - 36956

CONFIRM - http://support.apple.com/kb/HT3937

APPLE - APPLE-SA-2009-11-09-1

VUPEN - ADV-2009-3184

Related Patches

Apple 2009-11-09 Mac OS X v10.6.2 Update


Last Updated: 27 May 2016 10:51:02