Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer signedness error in bspatch.c in bspatch in bsdiff, as used in Apple OS X before 10.11.6 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow) via a crafted patch file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple OS X bsdiff 整数符号错误漏洞
Vulnerability Description
Apple OS X是美国苹果(Apple)公司为Mac计算机所开发的一套专用操作系统。bsdiff是其中的一个用于构建补丁的二进制文件的工具组件。 Apple OS X 10.11.6之前版本使用的bsdiff中的bspatch中的bspatch.c文件中存在整数符号错误漏洞。远程攻击者可借助特制的补丁文件利用该漏洞执行任意代码,或造成拒绝服务(基于堆的缓冲区溢出)。
CVSS Information
N/A
Vulnerability Type
N/A