Security Advisory
CVE-2007-4703
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The Application Firewall in Apple Mac OS X 10.5 does not prevent a root process from accepting incoming connections, even when "Block incoming connections" has been set for its associated executable, which might allow remote attackers or local root processes to bypass intended access restrictions.