Main
Vulnerability Database
Exploits
ID:4472 - Exploit for Input validation error in macOS and macOS Server - CVE-2011-0182
ID:4472 - Exploit for Input validation error in macOS and macOS Server - CVE-2011-0182
Published: August 11, 2020
Vulnerability identifier: #VU45168
Vulnerability risk: High
CVE-ID: CVE-2011-0182
CWE-ID: CWE-20
Exploitation vector: Remote access
Vulnerable software:
macOS
macOS Server
macOS
macOS Server
Link to public exploit:
Vulnerability description
The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.
The i386_set_ldt system call in the kernel in Apple Mac OS X before 10.6.7 does not properly handle call gates, which allows local users to gain privileges via vectors involving the creation of a call gate entry.
Remediation
Install update from vendor's website.