The ufs_lookup function in the Mac OS X 10.4.8 and FreeBSD 6.1 kernels allows local users to cause a denial of service (kernel panic) and possibly corrupt other filesystems by mounting a crafted UNIX File System (UFS) DMG image that contains a corrupted directory entry (struct direct), related to the ufs_dirbad function. NOTE: a third party states that the FreeBSD issue does not cross privilege boundaries.
2007-01-17T00:28:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 6.6 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:C/A:C
3.9
9.2
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | apple | mac_os_x | 10.4.8 | Yes |
Operating System | freebsd | freebsd | 6.1 | Yes |