EIP-2026-104562
PRE-CVEApple Mac OSX 10.x - SecurityServer Daemon Local Denial of Service
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104562. PoCs published by Matt Burnett.
AI-analyzed exploit summary This exploit triggers a denial of service in Apple MacOS X SecurityServer by passing an excessively large password length (0xFFFFFFFF) to SecKeychainUnlock(), causing a memory copy operation to crash the server. The potential for arbitrary code execution is unconfirmed but theorized due to memory corruption.
Description
Apple Mac OSX 10.x - SecurityServer Daemon Local Denial of Service
Exploits (1)
This exploit triggers a denial of service in Apple MacOS X SecurityServer by passing an excessively large password length (0xFFFFFFFF) to SecKeychainUnlock(), causing a memory copy operation to crash the server. The potential for arbitrary code execution is unconfirmed but theorized due to memory corruption.