Lucene search

K
cve[email protected]CVE-2010-0105
HistoryApr 27, 2010 - 3:30 p.m.

CVE-2010-0105

2010-04-2715:30:01
web.nvd.nist.gov
40
cve-2010-0105
apple
mac os x
denial of service
filesystem corruption
hfs
security vulnerability

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

AI Score

7.6

Confidence

High

EPSS

0

Percentile

9.7%

The hfs implementation in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 supports hard links to directories and does not prevent certain deeply nested directory structures, which allows local users to cause a denial of service (filesystem corruption) via a crafted application that calls the mkdir and link functions, related to the fsck_hfs program in the diskdev_cmds component.

Affected configurations

NVD
Node
applemac_os_xMatch10.5.8
OR
applemac_os_xMatch10.6.0
OR
applemac_os_xMatch10.6.1
OR
applemac_os_xMatch10.6.2
OR
applemac_os_xMatch10.6.3
OR
applemac_os_xMatch10.6.4
VendorProductVersionCPE
applemac_os_x10.6.3cpe:/o:apple:mac_os_x:10.6.3:::
applemac_os_x10.6.1cpe:/o:apple:mac_os_x:10.6.1:::
applemac_os_x10.6.0cpe:/o:apple:mac_os_x:10.6.0:::
applemac_os_x10.6.2cpe:/o:apple:mac_os_x:10.6.2:::
applemac_os_x10.6.4cpe:/o:apple:mac_os_x:10.6.4:::
applemac_os_x10.5.8cpe:/o:apple:mac_os_x:10.5.8:::

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

AI Score

7.6

Confidence

High

EPSS

0

Percentile

9.7%