Overview
A buffer overflow vulnerability in Apple's Xsan product may allow a local attacker to run arbitrary code with root privileges or create a denial-of-service condition.
Description
Xsan Filesystem Xsan is a Storage Area Network (SAN) filesystem designed for use by Apple OS X and OS X Server operating systems. |
Impact
A local, authenticated attacker may be able to execute arbitrary code with system privileges, or create a denial-of-service condition. |
Solution
Upgrade |
|
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
Acknowledgements
This vulnerability was reported by Apple, who credit Andrew Wellington of The Australian National University for reporting this vulnerability.
This document was written by Ryan Giobbi.
Other Information
CVE IDs: | CVE-2006-3506 |
Severity Metric: | 0.31 |
Date Public: | 2006-08-17 |
Date First Published: | 2006-08-21 |
Date Last Updated: | 2006-08-21 18:43 UTC |
Document Revision: | 25 |