VulnerabilityModified
CVE-2006-4866
Buffer overflow in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and possibly other products, allows local users to execute arbitrary code via a long extension argument.
MEDIUM 4.6EPSS 0.98%
Does this matter?
Lower severity and a low EPSS score (0.98%). Track it; it rarely justifies an emergency change on its own.
Description
Buffer overflow in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and possibly other products, allows local users to execute arbitrary code via a long extension argument.
- CVSS 2.0
- 4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 0.98% probability · 60th percentile
- CISA KEV
- Not listed
- Affected
- apple/mac os x · apple/mac os x server
- Source
- cve@mitre.org
References
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-September/049452.html
- http://www.netragard.com/pdfs/research/apple-kext-tools-20060822.txtVendor Advisory
- http://www.securityfocus.com/bid/20034
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-September/049452.html
- http://www.netragard.com/pdfs/research/apple-kext-tools-20060822.txtVendor Advisory
- http://www.securityfocus.com/bid/20034
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.