Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-0716

EPSS 0.20% · P42
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-0716

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Stack-based buffer overflow in the Core Foundation Library in Mac OS X 10.3.5 and 10.3.6, and possibly earlier versions, allows local users to execute arbitrary code via a long CF_CHARSET_PATH environment variable.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Mac OS X CF_CHARSET_PATH环境变量处理缓冲区溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Mac OS X是苹果家族的操作系统。 Mac OS X中默认捆绑的Core Foundation程序库中存在缓冲区溢出漏洞,可能允许攻击者获取root用户权限。 漏洞的起因是由于没有正确的处理CF_CHARSET_PATH环境变量。如果通过这个变量传送了大于1024个字符的字符串的话,就可能导致栈溢出,允许攻击者通过在栈中覆盖函数的返回地址来控制程序流。 任何链接到Core Foundation函数库上的应用程序都可用作这个漏洞的攻击载体。一些有漏洞的setuid root二进制程序包括su,pppd和
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-0716

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-0716

Please Login to view more intelligence information

Same Patch Batch · n/a · 2005-03-22 · 23 CVEs total

CVE-2005-0828RunCMS数据库配置信息泄露漏洞
CVE-2005-0838IceCast v2.20之前版本多个远程安全漏洞
CVE-2005-0837IceCast v2.20多个远程安全漏洞
CVE-2005-0836Java Web Start远程代码注入漏洞
CVE-2005-0835Belkin 54G无线路由器多个拒绝服务漏洞
CVE-2005-0834Belkin 54G无线路由器多个漏洞
CVE-2005-0833Belkin 54G 访问控制漏洞
CVE-2005-0832PHP-Post多个远程输入验证漏洞
CVE-2005-0831PHP-Post多个远程输入验证漏洞
CVE-2005-0830Xzabite DYNDNSUpdate多个远程缓冲区溢出漏洞
CVE-2005-0829PHP-Fusion Setuser.PHP HTML注入漏洞
CVE-2001-1424Alcatel Speed Touch ADSL调制解调器运行固件漏洞
CVE-2005-0827Viewcat.php漏洞
CVE-2005-0826OllyDbg长文件名处理模块拒绝服务漏洞
CVE-2005-0825LTris缓冲区溢出漏洞
CVE-2005-0764RXVT-Unicode远程缓冲区溢出漏洞
CVE-2005-0715Mac OS X 缓冲区溢出漏洞
CVE-2005-0713Mac OS X CF_CHARSET_PATH环境变量处理缓冲区溢出漏洞
CVE-2005-0712Mac OS X CF_CHARSET_PATH环境变量处理缓冲区溢出漏洞
CVE-2001-1427Allaire ColdFusion模板覆盖漏洞

Showing top 20 of 23 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2005-0716

No comments yet


Leave a comment