docs.info.apple.comConfirmation
http://docs.info.apple.com/article.html?artnum=307179 CVE-2007-3876
Apple Mac OSX - 'mount_smbfs' Local Stack Buffer Overflow
Record summary
CVE-2007-3876 has a selected CVSS score of 6.6; EIP currently links 1 catalogued exploit.
Description
Stack-based buffer overflow in SMB in Apple Mac OS X 10.4.11 allows local users to execute arbitrary code via (1) a long workgroup (-W) option to mount_smbfs or (2) an unspecified manipulation of the command line to smbutil.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBApple Mac OSX - 'mount_smbfs' Local Stack Buffer OverflowExploitDB exploitby Subreption LLC.Not analyzed1 file
References
1220071217 Apple Mac OS X mount_smbfs Stack Based Buffer Overflow VulnerabilityThird-party advisory
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=633 APPLE-SA-2007-12-17Vendor advisory
http://lists.apple.com/archives/security-announce/2007/Dec/msg00002.html 28136Third-party advisory
http://secunia.com/advisories/28136 1019106vdb entry
http://securitytracker.com/id?1019106 26910vdb entry
http://www.securityfocus.com/bid/26910 26926vdb entry
http://www.securityfocus.com/bid/26926 TA07-352AThird-party advisory
http://www.us-cert.gov/cas/techalerts/TA07-352A.html ADV-2007-4238vdb entry
http://www.vupen.com/english/advisories/2007/4238 macos-smb-bo(39109)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/39109 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2007-3876 4759exploit
https://www.exploit-db.com/exploits/4759