Full Disclosure mailing list archives

Work-around solution to : Apple Mac OS X Screen Saver Password Prompt Buffer Overflow Vulnerability


From: Rishi Pande <rpande () vt edu>
Date: Tue, 8 Jul 2003 17:43:59 -0400

Hello,
With regards to the above vulnerability, I tested 3 Machines (1: G4 450 & 2: Dual G4 1.2G) They all had the mentioned screen saver vulnerability. However, a work-around solution is if you use "Key-chain access" and lock screen instead of using the "hot-spot" method. The end effects are the same using both but the buffer overflow is avoided using the former method.
                Hope this helps.
                                                        Regards,
                                                        Rishi Pande

P.S. To get to Key Chain -
Desktop->Hard Drive->Applications->Utilities->Key-chain access->View->Show Status in MenuBar->Lock Screen

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: