Specific password text crashes password prompt dialog

Originator:jordanwan
Number:rdar://11267372 Date Originated:17-Apr-2012
Status:Open Resolved:
Product:OS X Product Version:10.7.3
Classification:Security Reproducible:Yes
 
Summary:

When prompted by the OS X system to enter a password for encryption the dialog can be crashed by entering a specific value.

Steps to Reproduce:

1. Open Disk Utility
2. Select to create a New Image from Folder
3. Choose a folder and set the Image Format to "compressed" and Encryption type to "256-bit AES encryption…"
4. When prompted enter the following digits into the password field…
5. "52553343667" (without quotes).

Expected Results:

The password field should be populated with the typed string, and allow you to enter the password into the 2nd field for confirmation.

Actual Results:

The password prompt crashes and an error "-60008" is returned.

Notes:

Note that this appears to occur anywhere on the system when a password prompt is invoked in order to create a password for encryption. It can also be reproduced in the Keychain Access app when exporting a key.

This has been tested on 2 different systems running OS X Lion 10.7.3 with identical results.

Comments


Please note: Reports posted here will not necessarily be seen by Apple. All problems should be submitted at bugreport.apple.com before they are posted here. Please only post information for Radars that you have filed yourself, and please do not include Apple confidential information in your posts. Thank you!