CVE-2007-3876
Mac OS X 10.4.11 - Stack-Based Buffer Overflow via SMB Workgroup Option
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-3876. PoCs published by Subreption LLC..
AI-analyzed exploit summary This exploit targets a local privilege escalation vulnerability in Mac OS X 10.4.10/10.4.11's mount_smbfs utility via a buffer overflow. It bypasses non-executable stack protections using shared_region_map_file_np() to map and execute shellcode, granting root access.
Description
Stack-based buffer overflow in SMB in Apple Mac OS X 10.4.11 allows local users to execute arbitrary code via (1) a long workgroup (-W) option to mount_smbfs or (2) an unspecified manipulation of the command line to smbutil.
Exploits (1)
This exploit targets a local privilege escalation vulnerability in Mac OS X 10.4.10/10.4.11's mount_smbfs utility via a buffer overflow. It bypasses non-executable stack protections using shared_region_map_file_np() to map and execute shellcode, granting root access.