CVE-2008-0058Race Condition in Apple MAC OS X

CWE-362Race Condition18 documents5 sources
Severity
5.8MEDIUMNVD
EPSS
4.2%
top 11.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 18
Latest updateMay 1

Description

Race condition in the NSURLConnection cache management functionality in Foundation for Apple Mac OS X 10.4.11 allows remote attackers to execute arbitrary code via unspecified manipulations that cause messages to be sent to a deallocated object.

CVSS vector

AV:N/AC:M/C:N/I:P/A:PExploitability: 8.6 | Impact: 4.9

Affected Packages2 packages

NVDapple/mac_os_x10.4.11

Patches

🔴Vulnerability Details

2
GHSA
GHSA-46fx-qwv3-wcfm: Race condition in the NSURLConnection cache management functionality in Foundation for Apple Mac OS X 102022-05-01
CVEList
CVE-2008-0058: Race condition in the NSURLConnection cache management functionality in Foundation for Apple Mac OS X 102008-03-18

📐Framework References

1
CWE
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

💬Community

14
Bugzilla
CVE-2007-6441 wireshark WiMAX dissector possible crash2008-01-02
Bugzilla
CVE-2007-6438 wireshark SMB dissector crash2008-01-02
Bugzilla
CVE-2007-6439 wireshark IPv6 and USB dissector crash2008-01-02
Bugzilla
CVE-2007-6450 wireshark RPL dissector crash2008-01-02
Bugzilla
CVE-2007-6451 wireshark CIP dissector crash2008-01-02
CVE-2008-0058 — Race Condition in Apple MAC OS X | cvebase