CVE-2009-2835Improper Input Validation in Apple MAC OS X

Severity
4.6MEDIUMNVD
EPSS
0.1%
top 79.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 10
Latest updateMay 2

Description

The kernel in Apple Mac OS X before 10.6.2 does not properly handle task state segments, which allows local users to gain privileges, cause a denial of service (system crash), or obtain sensitive information via unspecified vectors.

CVSS vector

AV:L/AC:L/C:P/I:P/A:PExploitability: 3.9 | Impact: 6.4

Affected Packages2 packages

NVDapple/mac_os_x10.6.1+58
NVDapple/mac_os_x_server10.6.1+58

Patches

🔴Vulnerability Details

2
GHSA
GHSA-97qx-33fc-6rj2: The kernel in Apple Mac OS X before 102022-05-02
CVEList
CVE-2009-2835: The kernel in Apple Mac OS X before 102009-11-10
CVE-2009-2835 — Improper Input Validation in Apple | cvebase